Vulnerabilities > Realtimelogic

DATE CVE VULNERABILITY TITLE RISK
2023-02-17 CVE-2023-24078 Code Injection vulnerability in Realtimelogic Fuguhub
Real Time Logic FuguHub v8.1 and earlier was discovered to contain a remote code execution (RCE) vulnerability via the component /FuguHub/cmsdocs/.
network
low complexity
realtimelogic CWE-94
8.8
2020-09-04 CVE-2020-23834 Incorrect Permission Assignment for Critical Resource vulnerability in Realtimelogic Barracudadrive 6.5
Insecure Service File Permissions in the bd service in Real Time Logic BarracudaDrive v6.5 allow local attackers to escalate privileges to admin by replacing the %SYSTEMDRIVE%\bd\bd.exe file.
local
low complexity
realtimelogic CWE-732
7.2
2014-05-21 CVE-2014-3808 Cross-Site Scripting vulnerability in multiple products
Multiple cross-site scripting (XSS) vulnerabilities in BarracudaDrive before 6.7.2 allow remote attackers to inject arbitrary web script or HTML via the (1) role parameter to roles.lsp, (2) name parameter to user.lsp, (3) path parameter to wizard/setuser.lsp, (4) host parameter to tunnelconstr.lsp, or (5) newpath parameter to wfsconstr.lsp in rtl/protected/admin/.
4.3