Vulnerabilities > Changingtec

DATE CVE VULNERABILITY TITLE RISK
2024-08-02 CVE-2024-40720 Unspecified vulnerability in Changingtec TCB Servisign
The specific API in TCBServiSign Windows Version from CHANGING Information Technology does not properly validate server-side input.
network
low complexity
changingtec
8.8
2024-08-02 CVE-2024-40721 Unspecified vulnerability in Changingtec TCB Servisign
The specific API in TCBServiSign Windows Version from CHANGING Information Technology does not properly validate server-side input.
network
low complexity
changingtec
8.8
2024-08-02 CVE-2024-40722 Out-of-bounds Write vulnerability in Changingtec TCB Servisign
The specific API in TCBServiSign Windows Version from CHANGING Information Technology does does not properly validate the length of server-side input.
network
low complexity
changingtec CWE-787
4.3
2024-08-02 CVE-2024-40723 Out-of-bounds Write vulnerability in Changingtec Hwatai Servisign
The specific API in HWATAIServiSign Windows Version from CHANGING Information Technology does not properly validate the length of server-side inputs.
network
low complexity
changingtec CWE-787
4.3
2024-08-02 CVE-2024-40719 Inadequate Encryption Strength vulnerability in Changingtec TCB Servisign
The encryption strength of the authorization keys in CHANGING Information Technology TCBServiSign Windows Version is insufficient.
network
low complexity
changingtec CWE-326
6.5
2023-04-27 CVE-2023-22901 Path Traversal vulnerability in Changingtec Mobile ONE Time Password
ChangingTec MOTP system has a path traversal vulnerability.
network
low complexity
changingtec CWE-22
4.9
2023-01-31 CVE-2022-39059 Path Traversal vulnerability in Changingtec Megaservisignadapter 1.0.17.0823
ChangingTech MegaServiSignAdapter component has a path traversal vulnerability within its file reading function.
network
low complexity
changingtec CWE-22
7.5
2023-01-31 CVE-2022-39060 Improper Input Validation vulnerability in Changingtec Megaservisignadapter 1.0.17.0823
ChangingTech MegaServiSignAdapter component has a vulnerability of improper input validation.
network
low complexity
changingtec CWE-20
critical
9.8
2023-01-31 CVE-2022-39061 Out-of-bounds Read vulnerability in Changingtec Megaservisignadapter 1.0.17.0823
ChangingTech MegaServiSignAdapter component has a vulnerability of Out-of-bounds Read due to insufficient validation for parameter length.
network
low complexity
changingtec CWE-125
6.5
2023-01-03 CVE-2022-46304 OS Command Injection vulnerability in Changingtec Servisign
ChangingTec ServiSign component has insufficient filtering for special characters in the connection response parameter.
network
low complexity
changingtec CWE-78
8.8