Vulnerabilities > Secomea > High

DATE CVE VULNERABILITY TITLE RISK
2023-07-17 CVE-2023-2912 Use After Free vulnerability in Secomea Sitemanager Embedded 9.2C
Use After Free vulnerability in Secomea SiteManager Embedded allows Obstruction.
network
low complexity
secomea CWE-416
7.5
2022-12-09 CVE-2022-2752 Improper Authentication vulnerability in Secomea Gatemanager 9.6.621421014
A vulnerability in the web server of Secomea GateManager allows a local user to impersonate as the previous user under some failed login conditions. This issue affects: Secomea GateManager versions from 9.4 through 9.7.
local
low complexity
secomea CWE-287
7.8
2022-12-06 CVE-2022-38123 Improper Input Validation vulnerability in Secomea Gatemanager 9.6.621421014
Improper Input Validation of plugin files in Administrator Interface of Secomea GateManager allows a server administrator to inject code into the GateManager interface. This issue affects: Secomea GateManager versions prior to 10.0.
network
low complexity
secomea CWE-20
7.2
2022-03-04 CVE-2021-32008 Path Traversal vulnerability in Secomea Gatemanager
This issue affects: Secomea GateManager Version 9.6.621421014 and all prior versions.
network
low complexity
secomea CWE-22
8.5
2020-08-25 CVE-2020-14508 Off-by-one Error vulnerability in Secomea Gatemanager 8250 Firmware 9.2C
GateManager versions prior to 9.2c, The affected product is vulnerable to an off-by-one error, which may allow an attacker to remotely execute arbitrary code or cause a denial-of-service condition.
network
low complexity
secomea CWE-193
7.5
2020-08-25 CVE-2020-14500 NULL Pointer Dereference vulnerability in Secomea Gatemanager 8250 Firmware 9.2C
Secomea GateManager all versions prior to 9.2c, An attacker can send a negative value and overwrite arbitrary data.
network
low complexity
secomea CWE-476
7.5