Vulnerabilities > Changingtec

DATE CVE VULNERABILITY TITLE RISK
2023-04-27 CVE-2023-22901 Path Traversal vulnerability in Changingtec Mobile ONE Time Password
ChangingTec MOTP system has a path traversal vulnerability.
network
low complexity
changingtec CWE-22
4.9
2023-01-31 CVE-2022-39059 Path Traversal vulnerability in Changingtec Megaservisignadapter
ChangingTech MegaServiSignAdapter component has a path traversal vulnerability within its file reading function.
network
low complexity
changingtec CWE-22
7.5
2023-01-31 CVE-2022-39060 Improper Input Validation vulnerability in Changingtec Megaservisignadapter
ChangingTech MegaServiSignAdapter component has a vulnerability of improper input validation.
network
low complexity
changingtec CWE-20
critical
9.8
2023-01-31 CVE-2022-39061 Out-of-bounds Read vulnerability in Changingtec Megaservisignadapter
ChangingTech MegaServiSignAdapter component has a vulnerability of Out-of-bounds Read due to insufficient validation for parameter length.
network
low complexity
changingtec CWE-125
6.5
2023-01-03 CVE-2022-46304 OS Command Injection vulnerability in Changingtec Servisign
ChangingTec ServiSign component has insufficient filtering for special characters in the connection response parameter.
network
low complexity
changingtec CWE-78
8.8
2023-01-03 CVE-2022-46305 Path Traversal vulnerability in Changingtec Servisign
ChangingTec ServiSign component has a path traversal vulnerability.
low complexity
changingtec CWE-22
6.5
2023-01-03 CVE-2022-46306 Path Traversal vulnerability in Changingtec Servisign
ChangingTec ServiSign component has a path traversal vulnerability due to insufficient filtering for special characters in the DLL file path.
local
low complexity
changingtec CWE-22
7.8
2022-10-18 CVE-2022-39055 Server-Side Request Forgery (SSRF) vulnerability in Changingtec Rava Certificate Validation System 3
RAVA certificate validation system has inadequate filtering for URL parameter.
network
low complexity
changingtec CWE-918
5.3
2022-10-18 CVE-2022-39056 SQL Injection vulnerability in Changingtec Rava Certificate Validation System 3
RAVA certificate validation system has insufficient validation for user input.
network
low complexity
changingtec CWE-89
critical
9.8
2022-10-18 CVE-2022-39057 Unspecified vulnerability in Changingtec Rava Certificate Validation System 3
RAVA certificate validation system has insufficient filtering for special parameter of the web page input field.
network
low complexity
changingtec
7.2