Guoxinled
Guoxinled Synthesis Image System: vulnerabilidades y CVE
Guoxinled Synthesis Image System tiene 4 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE4
Últimos 12 meses0
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-38468 | Crítica (9.8) | 0.42% | — | 16 jun 2024 | Shenzhen Guoxin Synthesis image system before 8.3.0 allows unauthorized password resets via the resetPassword API. |
| CVE-2024-38467 | Alta (7.5) | 0.38% | — | 16 jun 2024 | Shenzhen Guoxin Synthesis image system before 8.3.0 allows unauthorized user information retrieval via the queryUser API. |
| CVE-2024-38466 | Crítica (9.8) | 0.42% | — | 16 jun 2024 | Shenzhen Guoxin Synthesis image system before 8.3.0 has a 123456Qw default password. |
| CVE-2024-38465 | Media (5.3) | 0.25% | — | 16 jun 2024 | Shenzhen Guoxin Synthesis image system before 8.3.0 allows username enumeration because of the response discrepancy of incorrect versus error. |