CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
Media CP Media Control Panel latest version. Reflected XSS possible through unspecified endpoint.
Media CP Media Control Panel latest version. Insufficiently protected credential change.
Media CP Media Control Panel latest version. CSRF possible through unspecified endpoint.
Media CP Media Control Panel latest version. A Permissive Flash Cross-domain Policy may allow information disclosure.
Sunell DVR, latest version, Insufficiently Protected Credentials (CWE-522) may be exposed through an unspecified request.
Libpeconv – integer overflow, before commit 75b1565 (30/11/2022).
Libpeconv – access violation, before commit b076013 (30/11/2022).
Priority Web version 19.1.0.68, parameter manipulation on an unspecified end-point may allow authentication bypass.
Priority Windows may allow Command Execution via SQL Injection using an unspecified method.
Sunell DVR, latest version, CWE-200: Exposure of Sensitive Information to an Unauthorized Actor through an unspecified request.