Vulnerabilities > Silextechnology

DATE CVE VULNERABILITY TITLE RISK
2018-05-09 CVE-2018-6021 OS Command Injection vulnerability in Silextechnology Geh-Sd-320An Firmware and Sd-320An Firmware
Silex SD-320AN version 2.01 and prior and GE MobileLink(GEH-SD-320AN) version GEH-1.1 and prior have a system call parameter that is not properly sanitized, which may allow remote code execution.
network
low complexity
silextechnology CWE-78
7.4
2018-05-09 CVE-2018-6020 Improper Authentication vulnerability in Silextechnology products
In Silex SX-500 all versions and GE MobileLink(GEH-500) version 1.54 and prior, authentication is not verified when making certain POST requests, which may allow attackers to modify system settings.
network
low complexity
silextechnology CWE-287
6.5