Hgiga
Hgiga Oaklouds Portal: vulnerabilidades y CVE
Hgiga Oaklouds Portal tiene 5 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 4 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE5
Últimos 12 meses0
Críticas4
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-25909 | Crítica (9.8) | 0.94% | — | 27 mar 2023 | HGiga OAKlouds file uploading function does not restrict upload of file with dangerous type. An unauthenticated remote attacker can exploit this vulnerability to upload and run arbitrary executable files to perform… |
| CVE-2022-38118 | Alta (8.8) | 1.7% | — | 30 ago 2022 | OAKlouds Portal website’s Meeting Room has insufficient validation for user input. A remote attacker with general user privilege can perform SQL-injection to access, modify, delete database, perform system operations… |
| CVE-2021-37913 | Crítica (9.8) | 2.8% | — | 15 sept 2021 | The HGiga OAKlouds mobile portal does not filter special characters of the IPv6 Gateway parameter of the network interface card setting page. Remote attackers can use this vulnerability to perform command injection and… |
| CVE-2021-37912 | Crítica (9.8) | 2.8% | — | 15 sept 2021 | The HGiga OAKlouds mobile portal does not filter special characters of the Ethernet number parameter of the network interface card setting page. Remote attackers can use this vulnerability to perform command injection… |
| CVE-2021-22850 | Crítica (9.8) | 0.99% | — | 19 ene 2021 | HGiga EIP product lacks ineffective access control in certain pages that allow attackers to access database or perform privileged functions. |