Vulnerabilities > Servision > HVG Video Gateway Firmware > 2.2.26a100

DATE CVE VULNERABILITY TITLE RISK
2015-02-03 CVE-2015-1469 Permissions, Privileges, and Access Controls vulnerability in Servision HVG Video Gateway Firmware 2.2.26A100/2.2.26A77
time.htm in the web interface on SerVision HVG Video Gateway devices with firmware through 2.2.26a100 allows remote authenticated users to gain privileges by leveraging a cookie received in an HTTP response, a different vulnerability than CVE-2015-0929 and CVE-2015-0930.
network
low complexity
servision CWE-264
critical
9.0
2015-02-03 CVE-2015-0930 Credentials Management vulnerability in Servision HVG Video Gateway Firmware 2.2.26A100/2.2.26A77
The web interface on SerVision HVG Video Gateway devices with firmware before 2.2.26a100 has a hardcoded administrative password, which makes it easier for remote attackers to obtain access via an HTTP session.
network
low complexity
servision CWE-255
critical
10.0