Vulnerabilities > Dragino

DATE CVE VULNERABILITY TITLE RISK
2022-12-12 CVE-2022-45227 Files or Directories Accessible to External Parties vulnerability in Dragino Lg01 Lora Firmware 4.3.4
The web portal of Dragino Lora LG01 18ed40 IoT v4.3.4 has the directory listing at the URL https://10.10.20.74/lib/.
network
low complexity
dragino CWE-552
7.5
2022-12-12 CVE-2022-45228 Cross-Site Request Forgery (CSRF) vulnerability in Dragino Lg01 Lora Firmware 4.3.4
Dragino Lora LG01 18ed40 IoT v4.3.4 was discovered to contain a Cross-Site Request Forgery in the logout page.
network
low complexity
dragino CWE-352
3.5