Vulnerabilities > Nortekcontrol > Linear Emerge Essential Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2019-07-02 CVE-2019-7252 Insecure Default Initialization of Resource vulnerability in Nortekcontrol products
Linear eMerge E3-Series devices have Default Credentials.
network
low complexity
nortekcontrol CWE-1188
critical
9.8
2019-07-02 CVE-2019-7253 Path Traversal vulnerability in Nortekcontrol products
Linear eMerge E3-Series devices allow Directory Traversal.
network
low complexity
nortekcontrol CWE-22
critical
9.8
2019-07-02 CVE-2019-7256 OS Command Injection vulnerability in Nortekcontrol products
Linear eMerge E3-Series devices allow Command Injections.
network
low complexity
nortekcontrol CWE-78
critical
9.8
2019-07-02 CVE-2019-7257 Unrestricted Upload of File with Dangerous Type vulnerability in Nortekcontrol products
Linear eMerge E3-Series devices allow Unrestricted File Upload.
network
low complexity
nortekcontrol CWE-434
critical
10.0
2019-07-02 CVE-2019-7260 Insufficiently Protected Credentials vulnerability in Nortekcontrol products
Linear eMerge E3-Series devices have Cleartext Credentials in a Database.
network
low complexity
nortekcontrol CWE-522
critical
9.8
2019-07-02 CVE-2019-7261 Use of Hard-coded Credentials vulnerability in Nortekcontrol products
Linear eMerge E3-Series devices have Hard-coded Credentials.
network
low complexity
nortekcontrol CWE-798
critical
9.8
2019-07-02 CVE-2019-7263 Source Code vulnerability in Nortekcontrol products
Linear eMerge E3-Series devices have a Version Control Failure.
network
low complexity
nortekcontrol CWE-18
critical
9.8
2019-07-02 CVE-2019-7264 Out-of-bounds Write vulnerability in Nortekcontrol products
Linear eMerge E3-Series devices allow a Stack-based Buffer Overflow on the ARM platform.
network
low complexity
nortekcontrol CWE-787
critical
9.8
2019-07-02 CVE-2019-7265 Use of Hard-coded Credentials vulnerability in Nortekcontrol products
Linear eMerge E3-Series devices allow Remote Code Execution (root access over SSH).
network
low complexity
nortekcontrol CWE-798
critical
9.8