Vulnerabilities > Gesslergmbh

DATE CVE VULNERABILITY TITLE RISK
2024-02-01 CVE-2024-1039 Improper Authentication vulnerability in Gesslergmbh Web-Master Firmware 7.9
Gessler GmbH WEB-MASTER has a restoration account that uses weak hard coded credentials and if exploited could allow an attacker control over the web management of the device.
network
low complexity
gesslergmbh CWE-287
critical
9.8
2024-02-01 CVE-2024-1040 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Gesslergmbh Web-Master Firmware 7.9
Gessler GmbH WEB-MASTER user account is stored using a weak hashing algorithm.
local
low complexity
gesslergmbh CWE-327
4.4