Vulnerabilities > Circutor

DATE CVE VULNERABILITY TITLE RISK
2022-05-24 CVE-2022-1669 Stack-based Buffer Overflow vulnerability in Circutor Compact Dc-S Basic Firmware 1.2.17
A buffer overflow vulnerability has been detected in the firewall function of the device management web portal.
network
low complexity
circutor CWE-121
5.5
2021-12-02 CVE-2021-26777 Classic Buffer Overflow vulnerability in Circutor Compact Dc-S Basic Firmware 1.2.17
Buffer overflow vulnerability in function SetFirewall in index.cgi in CIRCUTOR COMPACT DC-S BASIC smart metering concentrator Firwmare version CIR_CDC_v1.2.17, allows attackers to execute arbitrary code.
network
low complexity
circutor CWE-120
critical
10.0
2021-06-09 CVE-2021-33841 OS Command Injection vulnerability in Circutor Sge-Plc1000 Firmware 0.9.2B
SGE-PLC1000 device, in its 0.9.2b firmware version, does not handle some requests correctly, allowing a remote attacker to inject code into the operating system with maximum privileges.
network
low complexity
circutor CWE-78
critical
9.8
2021-06-09 CVE-2021-33842 Reliance on Cookies without Validation and Integrity Checking vulnerability in Circutor Sge-Plc1000 Firmware 0.9.2B
Improper Authentication vulnerability in the cookie parameter of Circutor SGE-PLC1000 firmware version 0.9.2b allows an attacker to perform operations as an authenticated user.
low complexity
circutor CWE-565
8.8