Vulnerabilities > Iptime

DATE CVE VULNERABILITY TITLE RISK
2022-10-17 CVE-2022-23771 Cross-Site Request Forgery (CSRF) vulnerability in Iptime products
This vulnerability occurs in user accounts creation and deleteion related pages of IPTIME NAS products.
network
low complexity
iptime CWE-352
8.8
2022-03-25 CVE-2021-26620 Improper Authentication vulnerability in Iptime products
An improper authentication vulnerability leading to information leakage was discovered in iptime NAS2dual.
network
low complexity
iptime CWE-287
5.0
2021-11-30 CVE-2020-7879 OS Command Injection vulnerability in Iptime C200 Firmware 1.0.12
This issue was discovered when the ipTIME C200 IP Camera was synchronized with the ipTIME NAS.
network
iptime CWE-78
6.8
2021-11-22 CVE-2021-26614 Unspecified vulnerability in Iptime C200 Firmware 1.0.12
ius_get.cgi in IpTime C200 camera allows remote code execution.
network
low complexity
iptime
critical
10.0
2021-02-23 CVE-2020-7847 Unrestricted Upload of File with Dangerous Type vulnerability in Iptime products
The ipTIME NAS product allows an arbitrary file upload vulnerability in the Manage Bulletins/Upload feature, which can be leveraged to gain remote code execution.
low complexity
iptime CWE-434
5.2
2021-02-17 CVE-2020-7848 Command Injection vulnerability in Iptime C200 Firmware 1.0.12
The EFM ipTIME C200 IP Camera is affected by a Command Injection vulnerability in /login.cgi?logout=1 script.
low complexity
iptime CWE-77
7.7