Vulnerabilities > Hidglobal > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-02-07 CVE-2024-23806 Unspecified vulnerability in Hidglobal products
Sensitive data can be extracted from HID iCLASS SE reader configuration cards.
low complexity
hidglobal
5.3
2022-06-06 CVE-2022-31485 Forced Browsing vulnerability in multiple products
An unauthenticated attacker can send a specially crafted packets to update the “notes” section of the home page of the web interface.
network
low complexity
hidglobal carrier CWE-425
5.3
2019-07-16 CVE-2019-13603 Use of Insufficiently Random Values vulnerability in Hidglobal Digital Persona U.Are.U 4500 Driver Firmware 5.0.0.5
An issue was discovered in the HID Global DigitalPersona (formerly Crossmatch) U.are.U 4500 Fingerprint Reader Windows Biometric Framework driver 5.0.0.5.
network
high complexity
hidglobal CWE-330
5.9
2019-03-21 CVE-2018-17489 Cleartext Storage of Sensitive Information vulnerability in Hidglobal Easylobby Solo 11.0.4563
EasyLobby Solo could allow a local attacker to obtain sensitive information, caused by the storing of the social security number in plaintext.
local
low complexity
hidglobal CWE-312
5.5