Vulnerabilities > Hcomm

DATE CVE VULNERABILITY TITLE RISK
2020-01-28 CVE-2013-2571 Improper Input Validation vulnerability in Hcomm Xpient Iris 3.8
Iris 3.8 before build 1548, as used in Xpient point of sale (POS) systems, allows remote attackers to execute arbitrary commands via a crafted request to TCP port 7510, as demonstrated by opening the cash drawer.
network
low complexity
hcomm CWE-20
critical
9.8