Vulnerabilities > Optergy > Proton > 2.3.0a

DATE CVE VULNERABILITY TITLE RISK
2019-07-01 CVE-2019-7274 Unrestricted Upload of File with Dangerous Type vulnerability in Optergy Enterprise and Proton
Optergy Proton/Enterprise devices allow Authenticated File Upload with Code Execution as root.
network
low complexity
optergy CWE-434
critical
9.8
2019-07-01 CVE-2019-7273 Cross-Site Request Forgery (CSRF) vulnerability in Optergy Enterprise and Proton
Optergy Proton/Enterprise devices allow Cross-Site Request Forgery (CSRF).
network
low complexity
optergy CWE-352
8.8
2019-07-01 CVE-2019-7272 Missing Authorization vulnerability in Optergy Enterprise and Proton
Optergy Proton/Enterprise devices allow Username Disclosure.
network
low complexity
optergy CWE-862
5.0
2019-07-01 CVE-2019-7277 Information Exposure vulnerability in Optergy Enterprise and Proton
Optergy Proton/Enterprise devices allow Unauthenticated Internal Network Information Disclosure.
network
low complexity
optergy CWE-200
5.0
2019-07-01 CVE-2019-7275 Open Redirect vulnerability in Optergy Enterprise and Proton
Optergy Proton/Enterprise devices allow Open Redirect.
network
low complexity
optergy CWE-601
6.1