Vulnerabilities > Silextechnology
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-05-09 | CVE-2018-6021 | OS Command Injection vulnerability in Silextechnology Geh-Sd-320An Firmware and Sd-320An Firmware Silex SD-320AN version 2.01 and prior and GE MobileLink(GEH-SD-320AN) version GEH-1.1 and prior have a system call parameter that is not properly sanitized, which may allow remote code execution. | 7.4 |
2018-05-09 | CVE-2018-6020 | Improper Authentication vulnerability in Silextechnology products In Silex SX-500 all versions and GE MobileLink(GEH-500) version 1.54 and prior, authentication is not verified when making certain POST requests, which may allow attackers to modify system settings. | 6.5 |