Vulnerabilities > Lcnet > Smart Evision > 2022.02.21

DATE CVE VULNERABILITY TITLE RISK
2022-09-28 CVE-2022-39030 Incorrect Authorization vulnerability in Lcnet Smart Evision 2022.02.21
smart eVision has inadequate authorization for system information query function.
network
low complexity
lcnet CWE-863
7.5
2022-09-28 CVE-2022-39031 Incorrect Authorization vulnerability in Lcnet Smart Evision 2022.02.21
Smart eVision has insufficient authorization for task acquisition function.
network
low complexity
lcnet CWE-863
5.3
2022-09-28 CVE-2022-39032 Improper Privilege Management vulnerability in Lcnet Smart Evision 2022.02.21
Smart eVision has an improper privilege management vulnerability.
network
low complexity
lcnet CWE-269
8.8
2022-09-28 CVE-2022-39033 Path Traversal vulnerability in Lcnet Smart Evision 2022.02.21
Smart eVision’s file acquisition function has a path traversal vulnerability due to insufficient filtering for special characters in the URL parameter.
network
low complexity
lcnet CWE-22
critical
9.8
2022-09-28 CVE-2022-39035 Cross-site Scripting vulnerability in Lcnet Smart Evision 2022.02.21
Smart eVision has insufficient filtering for special characters in the POST Data parameter in the specific function.
network
low complexity
lcnet CWE-79
6.1