CVE List

Id CVE No. Status Description Phase Votes Comments Actions
101983  CVE-2017-5163  Candidate  An issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions. After an administrator downloads a configuration file, a copy of the configuration file, which includes hashes of user passwords, is saved to a location that is accessible without authentication by path traversal.  Assigned (20170103)  None (candidate not yet proposed)    View
101984  CVE-2017-5164  Candidate  An issue was discovered in BINOM3 Universal Multifunctional Electric Power Quality Meter. Input sent from a malicious client is not properly verified by the server. An attacker can execute arbitrary script code in another user"s browser session (CROSS-SITE SCRIPTING).  Assigned (20170103)  None (candidate not yet proposed)    View
101985  CVE-2017-5165  Candidate  An issue was discovered in BINOM3 Universal Multifunctional Electric Power Quality Meter. There is no CSRF Token generated per page and/or per (sensitive) function. Successful exploitation of this vulnerability can allow silent execution of unauthorized actions on the device such as configuration parameter changes, and saving modified configuration.  Assigned (20170103)  None (candidate not yet proposed)    View
101986  CVE-2017-5166  Candidate  An issue was discovered in BINOM3 Universal Multifunctional Electric Power Quality Meter. An INFORMATION EXPOSURE flaw can be used to gain privileged access to the device.  Assigned (20170103)  None (candidate not yet proposed)    View
101987  CVE-2017-5167  Candidate  An issue was discovered in BINOM3 Universal Multifunctional Electric Power Quality Meter. Users do not have any option to change their own passwords.  Assigned (20170103)  None (candidate not yet proposed)    View

Page 19755 of 20943, showing 5 records out of 104715 total, starting on record 98771, ending on 98775

Actions