Vulnerabilities > Getvera > Critical
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2019-07-14 | CVE-2019-13598 | OS Command Injection vulnerability in Getvera Vera Edge Firmware 1.7.4452 LuaUPnP in Vera Edge Home Controller 1.7.4452 allows remote unauthenticated users to execute arbitrary OS commands via the code parameter to /port_3480/data_request because the "No unsafe lua allowed" code block is skipped. | 9.8 |
2019-06-17 | CVE-2017-9385 | Credentials Management vulnerability in Getvera Veraedge Firmware and Veralite Firmware An issue was discovered on Vera Veralite 1.7.481 devices. | 9.8 |
2019-06-17 | CVE-2017-9383 | Improper Authentication vulnerability in Getvera Veraedge Firmware and Veralite Firmware An issue was discovered on Vera VeraEdge 1.7.19 and Veralite 1.7.481 devices. | 9.9 |