NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
28322  CVE-2015-7926  eWON devices with firmware before 10.1s0 omit RBAC for I/O server information and status requests, which allows remote attackers to obtain sensitive information via an unspecified URL.    Medium  2017-01-19  2016-12-07  View
28323  CVE-2015-7927  Cross-site scripting (XSS) vulnerability on eWON devices with firmware through 10.1s0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-01-19  2016-12-07  View
28324  CVE-2015-7928  eWON devices with firmware before 10.1s0 do not have an off autocomplete attribute for a password field, which makes it easier for remote attackers to obtain access by leveraging an unattended workstation.    Medium  2017-01-19  2016-12-07  View
28325  CVE-2015-7929  eWON devices with firmware through 10.1s0 support unspecified GET requests, which might allow remote attackers to obtain sensitive information by reading (1) web-server access logs, (2) web-server Referer logs, or (3) the browser history.    Medium  2017-01-19  2016-12-07  View
28326  CVE-2015-7930  Adcon Telemetry A840 Telemetry Gateway Base Station has hardcoded credentials, which allows remote attackers to obtain administrative access via unspecified vectors.    10  High  2017-01-19  2016-11-28  View

Page 14994 of 17672, showing 5 records out of 88360 total, starting on record 74966, ending on 74970

Actions