Vulnerabilities > Resourcexpress

DATE CVE VULNERABILITY TITLE RISK
2020-11-17 CVE-2020-25746 Information Exposure vulnerability in Resourcexpress Qubi3 Firmware
QED ResourceXpress Qubi3 devices before 1.40.9 could allow a local attacker (with physical access to the device) to obtain sensitive information via the debug interface (keystrokes over a USB cable), aka wireless password visibility.
local
low complexity
resourcexpress CWE-200
2.1
2020-11-12 CVE-2020-13877 SQL Injection vulnerability in Resourcexpress Meeting Monitor 4.9
SQL Injection issues in various ASPX pages of ResourceXpress Meeting Monitor 4.9 could lead to remote code execution and information disclosure.
network
low complexity
resourcexpress CWE-89
7.5