Vulnerabilities > Servision

DATE CVE VULNERABILITY TITLE RISK
2015-02-03 CVE-2015-1469 Permissions, Privileges, and Access Controls vulnerability in Servision HVG Video Gateway Firmware 2.2.26A100/2.2.26A77
time.htm in the web interface on SerVision HVG Video Gateway devices with firmware through 2.2.26a100 allows remote authenticated users to gain privileges by leveraging a cookie received in an HTTP response, a different vulnerability than CVE-2015-0929 and CVE-2015-0930.
network
low complexity
servision CWE-264
critical
9.0
2015-02-03 CVE-2015-0930 Credentials Management vulnerability in Servision HVG Video Gateway Firmware 2.2.26A100/2.2.26A77
The web interface on SerVision HVG Video Gateway devices with firmware before 2.2.26a100 has a hardcoded administrative password, which makes it easier for remote attackers to obtain access via an HTTP session.
network
low complexity
servision CWE-255
critical
10.0
2015-02-03 CVE-2015-0929 Improper Access Control vulnerability in Servision HVG Video Gateway Firmware 2.2.26A77
time.htm in the web interface on SerVision HVG Video Gateway devices with firmware before 2.2.26a78 allows remote attackers to bypass authentication and obtain administrative access by leveraging a cookie received in an HTTP response.
network
low complexity
servision CWE-284
critical
10.0