Secomea
Secomea Gatemanager: vulnerabilidades y CVE
Secomea Gatemanager tiene 15 vulnerabilidades publicadas, 3 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE15
Últimos 12 meses3
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-1759 | Media (6.5) | 0.26% | — | 15 sept 2026 | Improper handling of insufficient permissions or privileges vulnerability in Secomea GateManager allows Privilege Escalation. This issue affects GateManager: 11.5;0, 11.4.625515072:0. Fixed in Version 11.6 or… |
| CVE-2026-1758 | Alta (8.3) | 0.24% | — | 15 sept 2026 | Session fixation vulnerability in Secomea GateManager (webserver module) allows Session Fixation. This issue affects GateManager: 11.5;0, 11.4.625515072:0. Fixed in Version 11.6 or 11.4.626194074 and above |
| CVE-2025-14716 | Media (6.5) | 0.35% | — | 19 mar 2026 | Improper Authentication vulnerability in Secomea GateManager (webserver modules) allows Authentication Bypass.This issue affects GateManager: 11.4;0. |
| CVE-2021-32007 | Baja (3.5) | 0.26% | — | 13 dic 2024 | This issue affects: Secomea GateManager Version 9.5 and all prior versions. Protection Mechanism Failure vulnerability in web server of Secomea GateManager to potentially leak information to remote servers. |
| CVE-2024-1969 | Alta (8.2) | 0.46% | — | 29 abr 2024 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Secomea GateManager (webserver modules) allows crash of GateManager.This issue affects GateManager: from 9.7 before 11.2.624095033. |
| CVE-2024-1579 | Alta (8.1) | 0.52% | — | 29 abr 2024 | Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG) vulnerability in Secomea GateManager (Webserver modules) allows Session Hijacking.This issue affects GateManager: before 11.2.624071020. |
| CVE-2023-3675 | Media (6.5) | 0.54% | — | 18 abr 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Secomea GateManager (Web GUI) allows Reading Data from System Resources.This issue affects GateManager: from 11.0.623074018… |
| CVE-2023-0317 | Media (4.9) | 0.52% | — | 19 abr 2023 | Unprotected Alternate Channel vulnerability in debug console of GateManager allows system administrator to obtain sensitive information. |
| CVE-2022-4308 | Alta (8.8) | 0.17% | — | 19 abr 2023 | Plaintext Storage of a Password vulnerability in Secomea GateManager (USB wizard) allows Authentication abuse on SiteManager, if the generated file is leaked. |
| CVE-2022-2752 | Alta (7.8) | 0.18% | — | 9 dic 2022 | A vulnerability in the web server of Secomea GateManager allows a local user to impersonate as the previous user under some failed login conditions. This issue affects: Secomea GateManager versions from 9.4 through 9.7. |
| CVE-2022-38123 | Alta (7.2) | 0.77% | — | 6 dic 2022 | Improper Input Validation of plugin files in Administrator Interface of Secomea GateManager allows a server administrator to inject code into the GateManager interface. This issue affects: Secomea GateManager versions… |
| CVE-2022-25786 | Media (4.9) | 0.74% | — | 4 may 2022 | Unprotected Alternate Channel vulnerability in debug console of GateManager allows system administrator to obtain sensitive information. This issue affects: GateManager all versions prior to 9.7. |
| CVE-2021-32009 | Media (6.1) | 0.50% | — | 11 mar 2022 | Cross-site Scripting (XSS) vulnerability in firmware section of Secomea GateManager allows logged in user to inject javascript in browser session. This issue affects: Secomea GateManager Version 9.6.621421014 and all… |
| CVE-2021-32006 | Media (4.3) | 0.64% | — | 10 mar 2022 | This issue affects: Secomea GateManager Version 9.6.621421014 and all prior versions. Permission Issues vulnerability in LinkManager web portal of Secomea GateManager allows logged in LinkManager user to access stored… |
| CVE-2021-32008 | Alta (8.7) | 1.00% | — | 4 mar 2022 | This issue affects: Secomea GateManager Version 9.6.621421014 and all prior versions. Improper Limitation of a Pathname to restricted directory, allows logged in GateManager admin to delete system Files or Directories. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.
Otros productos de Secomea
Gatemanager 8250 Firmware · 20Gatemanager 4250 Firmware · 14Gatemanager 9250 Firmware · 14Gatemanager 4260 Firmware · 14Sitemanager 1149 Firmware · 7Sitemanager 3549 Firmware · 7Sitemanager 3539 Firmware · 7Sitemanager 3529 Firmware · 7Sitemanager 3339 Firmware · 7Sitemanager 3329 Firmware · 7Sitemanager 3349 Firmware · 7Sitemanager 1129 Firmware · 7