Vulnerabilities > Hgiga > Oaklouds Portal > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-09-15 CVE-2021-37913 OS Command Injection vulnerability in Hgiga Oaklouds Portal
The HGiga OAKlouds mobile portal does not filter special characters of the IPv6 Gateway parameter of the network interface card setting page.
network
low complexity
hgiga CWE-78
critical
10.0
2021-09-15 CVE-2021-37912 OS Command Injection vulnerability in Hgiga Oaklouds Portal
The HGiga OAKlouds mobile portal does not filter special characters of the Ethernet number parameter of the network interface card setting page.
network
low complexity
hgiga CWE-78
critical
10.0
2021-01-19 CVE-2021-22850 Missing Authentication for Critical Function vulnerability in Hgiga Oaklouds Portal
HGiga EIP product lacks ineffective access control in certain pages that allow attackers to access database or perform privileged functions.
network
low complexity
hgiga CWE-306
critical
9.8