Vulnerabilities > Saho

DATE CVE VULNERABILITY TITLE RISK
2023-08-28 CVE-2023-38030 Missing Authentication for Critical Function vulnerability in Saho Adm-100 Firmware and Adm-100Fp Firmware
Saho’s attendance devices ADM100 and ADM-100FP have a vulnerability of missing authentication for critical functions.
network
low complexity
saho CWE-306
7.5
2023-08-28 CVE-2023-38029 Unrestricted Upload of File with Dangerous Type vulnerability in Saho Adm-100 Firmware and Adm-100Fp Firmware
Saho’s attendance devices ADM100 and ADM-100FP has insufficient filtering for special characters and file type within their file uploading function.
network
low complexity
saho CWE-434
critical
9.8
2023-08-28 CVE-2023-38028 Missing Authentication for Critical Function vulnerability in Saho Adm-100 Firmware and Adm-100Fp Firmware
Saho’s attendance devices ADM100 and ADM-100FP have insufficient authentication.
network
low complexity
saho CWE-306
critical
9.1