Vulnerabilities > Paradox

DATE CVE VULNERABILITY TITLE RISK
2023-03-21 CVE-2023-24709 Code Injection vulnerability in Paradox Ipr512 Firmware
An issue found in Paradox Security Systems IPR512 allows attackers to cause a denial of service via the login.html and login.xml parameters.
network
low complexity
paradox CWE-94
7.5
2020-11-21 CVE-2020-25189 Stack-based Buffer Overflow vulnerability in Paradox Ip150 Firmware 5.02.09
The affected product is vulnerable to three stack-based buffer overflows, which may allow an unauthenticated attacker to remotely execute arbitrary code on the IP150 (firmware versions 5.02.09).
network
low complexity
paradox CWE-121
critical
9.8
2020-11-21 CVE-2020-25185 Classic Buffer Overflow vulnerability in Paradox Ip150 Firmware 5.02.09
The affected product is vulnerable to five post-authentication buffer overflows, which may allow a logged in user to remotely execute arbitrary code on the IP150 (firmware versions 5.02.09).
network
low complexity
paradox CWE-120
8.8