Vulnerabilities > Nortekcontrol
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2019-07-02 | CVE-2019-7262 | Cross-Site Request Forgery (CSRF) vulnerability in Nortekcontrol products Linear eMerge E3-Series devices allow Cross-Site Request Forgery (CSRF). | 8.8 |
2019-07-02 | CVE-2019-7261 | Use of Hard-coded Credentials vulnerability in Nortekcontrol products Linear eMerge E3-Series devices have Hard-coded Credentials. | 9.8 |
2019-07-02 | CVE-2019-7260 | Insufficiently Protected Credentials vulnerability in Nortekcontrol products Linear eMerge E3-Series devices have Cleartext Credentials in a Database. | 9.8 |
2019-07-02 | CVE-2019-7259 | Information Exposure vulnerability in Nortekcontrol products Linear eMerge E3-Series devices allow Authorization Bypass with Information Disclosure. | 8.8 |
2019-07-02 | CVE-2019-7270 | Cross-Site Request Forgery (CSRF) vulnerability in Nortekcontrol products Linear eMerge 50P/5000P devices allow Cross-Site Request Forgery (CSRF). | 8.8 |
2019-07-02 | CVE-2019-7269 | OS Command Injection vulnerability in Nortekcontrol products Linear eMerge 50P/5000P devices allow Authenticated Command Injection with root Code Execution. | 9.8 |
2019-07-02 | CVE-2019-7268 | Unrestricted Upload of File with Dangerous Type vulnerability in Nortekcontrol products Linear eMerge 50P/5000P devices allow Unauthenticated File Upload. | 10.0 |
2019-07-02 | CVE-2019-7267 | Path Traversal vulnerability in Nortekcontrol products Linear eMerge 50P/5000P devices allow Cookie Path Traversal. | 9.8 |
2019-07-02 | CVE-2019-7266 | Reliance on Cookies without Validation and Integrity Checking vulnerability in Nortekcontrol products Linear eMerge 50P/5000P devices allow Authentication Bypass. | 9.8 |
2019-07-02 | CVE-2019-7265 | Use of Hard-coded Credentials vulnerability in Nortekcontrol products Linear eMerge E3-Series devices allow Remote Code Execution (root access over SSH). | 9.8 |