Racom
Racom M!dge Firmware: vulnerabilidades y CVE
Racom M!dge Firmware tiene 9 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE9
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2021-20075 | Alta (7.8) | 0.24% | — | 16 feb 2021 | Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows for privilege escalation via configd. |
| CVE-2021-20074 | Alta (8.8) | 1.3% | — | 16 feb 2021 | Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows users to escape the provided command line interface and execute arbitrary OS commands. |
| CVE-2021-20073 | Alta (8.8) | 0.47% | — | 16 feb 2021 | Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows for cross-site request forgeries. |
| CVE-2021-20072 | Alta (7.2) | 1.5% | — | 16 feb 2021 | Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to arbitrarily access and delete files via an authenticated directory traveral. |
| CVE-2021-20071 | Media (4.8) | 0.48% | — | 16 feb 2021 | Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to conduct cross-site scriptings attacks via the sms.php dialogs. |
| CVE-2021-20070 | Media (4.8) | 0.48% | — | 16 feb 2021 | Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to conduct cross-site scriptings attacks via the virtualization.php dialogs. |
| CVE-2021-20069 | Media (4.8) | 0.48% | — | 16 feb 2021 | Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to conduct cross-site scripting attacks via the regionalSettings.php dialogs. |
| CVE-2021-20068 | Media (4.8) | 0.48% | — | 16 feb 2021 | Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to conduct cross-site scripting attacks via the error handling functionality of web pages. |
| CVE-2021-20067 | Media (5.3) | 0.87% | — | 16 feb 2021 | Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to view sensitive syslog events without authentication. |