Vulnerabilities > Zivautomation

DATE CVE VULNERABILITY TITLE RISK
2021-01-29 CVE-2021-25910 Improper Authentication vulnerability in Zivautomation 4Cct-Ea6-334126Bf Firmware 3.23.77.8.33251
Improper Authentication vulnerability in the cookie parameter of ZIV AUTOMATION 4CCT-EA6-334126BF allows a local attacker to perform modifications in several parameters of the affected device as an authenticated user.
low complexity
zivautomation CWE-287
6.5
2021-01-29 CVE-2021-25909 Resource Exhaustion vulnerability in Zivautomation 4Cct-Ea6-334126Bf Firmware 3.23.80.27.36371
ZIV Automation 4CCT-EA6-334126BF firmware version 3.23.80.27.36371, allows an unauthenticated, remote attacker to cause a denial of service condition on the device.
network
low complexity
zivautomation CWE-400
7.5