Vulnerabilities > Secomea > Gatemanager

DATE CVE VULNERABILITY TITLE RISK
2023-04-19 CVE-2022-4308 Insufficiently Protected Credentials vulnerability in Secomea Gatemanager 9.6.621421014
Plaintext Storage of a Password vulnerability in Secomea GateManager (USB wizard) allows Authentication abuse on SiteManager, if the generated file is leaked.
local
low complexity
secomea CWE-522
8.8
2023-04-19 CVE-2023-0317 Unspecified vulnerability in Secomea Gatemanager 9.6.621421014
Unprotected Alternate Channel vulnerability in debug console of GateManager allows system administrator to obtain sensitive information.
network
low complexity
secomea
4.9
2022-12-09 CVE-2022-2752 Improper Authentication vulnerability in Secomea Gatemanager 9.6.621421014
A vulnerability in the web server of Secomea GateManager allows a local user to impersonate as the previous user under some failed login conditions. This issue affects: Secomea GateManager versions from 9.4 through 9.7.
local
low complexity
secomea CWE-287
7.8
2022-12-06 CVE-2022-38123 Improper Input Validation vulnerability in Secomea Gatemanager 9.6.621421014
Improper Input Validation of plugin files in Administrator Interface of Secomea GateManager allows a server administrator to inject code into the GateManager interface. This issue affects: Secomea GateManager versions prior to 10.0.
network
low complexity
secomea CWE-20
7.2
2022-05-04 CVE-2022-25786 Unspecified vulnerability in Secomea Gatemanager 9.6.621421014
Unprotected Alternate Channel vulnerability in debug console of GateManager allows system administrator to obtain sensitive information.
network
low complexity
secomea
4.9
2022-03-11 CVE-2021-32009 Cross-site Scripting vulnerability in Secomea Gatemanager 9.6.621421014
Cross-site Scripting (XSS) vulnerability in firmware section of Secomea GateManager allows logged in user to inject javascript in browser session.
network
low complexity
secomea CWE-79
6.1
2022-03-10 CVE-2021-32006 Incorrect Default Permissions vulnerability in Secomea Gatemanager 9.6.621421014
This issue affects: Secomea GateManager Version 9.6.621421014 and all prior versions.
network
low complexity
secomea CWE-276
4.3
2022-03-04 CVE-2021-32008 Path Traversal vulnerability in Secomea Gatemanager 9.6.621421014
This issue affects: Secomea GateManager Version 9.6.621421014 and all prior versions.
network
low complexity
secomea CWE-22
8.7