Vulnerabilities > Solar LOG

DATE CVE VULNERABILITY TITLE RISK
2024-02-02 CVE-2023-46344 Cross-site Scripting vulnerability in Solar-Log 2000 Pm+ Firmware 15.10.2019
A vulnerability in Solar-Log Base 15 Firmware 6.0.1 Build 161, and possibly other Solar-Log Base products, allows an attacker to escalate their privileges by exploiting a stored cross-site scripting (XSS) vulnerability in the switch group function under /#ilang=DE&b=c_smartenergy_swgroups in the web portal.
network
low complexity
solar-log CWE-79
5.4
2023-01-26 CVE-2022-47767 Unspecified vulnerability in Solar-Log products
A backdoor in Solar-Log Gateway products allows remote access via web panel gaining super administration privileges to the attacker.
network
low complexity
solar-log
critical
9.8
2022-06-09 CVE-2017-20019 Unspecified vulnerability in Solar-Log products
A vulnerability classified as problematic was found in Solare Solar-Log 2.8.4-56/3.5.2-85.
network
low complexity
solar-log
7.5
2022-06-09 CVE-2017-20020 Cross-Site Request Forgery (CSRF) vulnerability in Solar-Log products
A vulnerability, which was classified as problematic, has been found in Solare Solar-Log 2.8.4-56/3.5.2-85.
network
low complexity
solar-log CWE-352
8.8
2022-06-09 CVE-2017-20021 Unrestricted Upload of File with Dangerous Type vulnerability in Solar-Log products
A vulnerability, which was classified as critical, was found in Solare Solar-Log 2.8.4-56/3.5.2-85.
network
low complexity
solar-log CWE-434
critical
9.8
2022-06-09 CVE-2017-20022 Unspecified vulnerability in Solar-Log products
A vulnerability has been found in Solare Solar-Log 2.8.4-56/3.5.2-85 and classified as problematic.
network
low complexity
solar-log
7.5
2022-06-09 CVE-2017-20023 Unspecified vulnerability in Solar-Log products
A vulnerability was found in Solare Solar-Log 2.8.4-56/3.5.2-85 and classified as critical.
network
low complexity
solar-log
critical
9.8
2022-06-09 CVE-2017-20024 Unspecified vulnerability in Solar-Log products
A vulnerability was found in Solare Solar-Log 2.8.4-56/3.5.2-85.
network
low complexity
solar-log
7.5
2022-06-09 CVE-2017-20025 Unspecified vulnerability in Solar-Log products
A vulnerability was found in Solare Solar-Log 2.8.4-56/3.5.2-85.
network
low complexity
solar-log
critical
9.8