Vulnerabilities > Primasystems

DATE CVE VULNERABILITY TITLE RISK
2019-07-01 CVE-2019-7670 OS Command Injection vulnerability in Primasystems Flexair 2.3.38
Prima Systems FlexAir, Versions 2.3.38 and prior.
network
low complexity
primasystems CWE-78
7.2
2019-07-01 CVE-2019-7669 Unrestricted Upload of File with Dangerous Type vulnerability in Primasystems Flexair 2.3.38
Prima Systems FlexAir, Versions 2.3.38 and prior.
network
low complexity
primasystems CWE-434
8.8
2019-07-01 CVE-2019-7668 Insecure Default Initialization of Resource vulnerability in Primasystems Flexair 2.3.38
Prima Systems FlexAir devices have Default Credentials.
network
low complexity
primasystems CWE-1188
5.0
2019-07-01 CVE-2019-7667 Use of Insufficiently Random Values vulnerability in Primasystems Flexair 2.3.38
Prima Systems FlexAir, Versions 2.3.38 and prior.
network
low complexity
primasystems CWE-330
critical
9.8
2019-07-01 CVE-2019-7666 Improper Authentication vulnerability in Primasystems Flexair 2.3.38
Prima Systems FlexAir, Versions 2.3.38 and prior.
network
low complexity
primasystems CWE-287
8.8
2019-07-01 CVE-2019-7281 Cross-Site Request Forgery (CSRF) vulnerability in Primasystems Flexair 2.3.38
Prima Systems FlexAir, Versions 2.3.38 and prior.
network
low complexity
primasystems CWE-352
8.8
2019-07-01 CVE-2019-7280 Insufficient Session Expiration vulnerability in Primasystems Flexair 2.3.38
Prima Systems FlexAir, Versions 2.3.38 and prior.
network
low complexity
primasystems CWE-613
8.8
2019-06-05 CVE-2019-7672 Use of Hard-coded Credentials vulnerability in Primasystems Flexair 2.3.38
Prima Systems FlexAir, Versions 2.3.38 and prior.
network
low complexity
primasystems CWE-798
8.8
2019-06-05 CVE-2019-7671 Cross-site Scripting vulnerability in Primasystems Flexair 2.3.38
Prima Systems FlexAir, Versions 2.3.38 and prior.
network
low complexity
primasystems CWE-79
critical
9.0
2019-06-05 CVE-2019-9189 Unrestricted Upload of File with Dangerous Type vulnerability in Primasystems Flexair 2.3.38
Prima Systems FlexAir, Versions 2.4.9api3 and prior.
network
low complexity
primasystems CWE-434
critical
9.0