Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
secomea gatemanager 8250 firmware 9.2c vulnerabilities and exploits
(subscribe to this query)
668
VMScore
CVE-2020-14500
Secomea GateManager all versions before 9.2c, An attacker can send a negative value and overwrite arbitrary data.
Secomea Gatemanager 8250 Firmware 9.2c
890
VMScore
CVE-2020-14510
GateManager versions before 9.2c, The affected product contains a hard-coded credential for telnet, allowing an unprivileged malicious user to execute commands as root.
Secomea Gatemanager 8250 Firmware 9.2c
668
VMScore
CVE-2020-14508
GateManager versions before 9.2c, The affected product is vulnerable to an off-by-one error, which may allow an malicious user to remotely execute arbitrary code or cause a denial-of-service condition.
Secomea Gatemanager 8250 Firmware 9.2c
490
VMScore
CVE-2020-29026
A directory traversal vulnerability exists in the file upload function of the GateManager that allows an authenticated attacker with administrative permissions to read and write arbitrary files in the Linux file system. This issue affects: GateManager all versions before 9.2c.
Secomea Gatemanager 8250 Firmware
Secomea Gatemanager 4250 Firmware
Secomea Gatemanager 4260 Firmware
Secomea Gatemanager 9250 Firmware
490
VMScore
CVE-2020-29031
An Insecure Direct Object Reference vulnerability exists in the web UI of the GateManager which allows an authenticated malicious user to reset the password of any user in its domain or any sub-domain, via escalation of privileges. This issue affects all GateManager versions befo...
Secomea Gatemanager 8250 Firmware
Secomea Gatemanager 4250 Firmware
Secomea Gatemanager 4260 Firmware
Secomea Gatemanager 9250 Firmware
445
VMScore
CVE-2020-14512
GateManager versions before 9.2c, The affected product uses a weak hash type, which may allow an malicious user to view user passwords.
Secomea Gatemanager 8250 Firmware
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-28995
CVE-2024-36680
CVE-2024-35537
unauthorized
CVE-2024-21518
CVE-2024-37673
cross-site scripting
SSRF
CVE-2024-6241
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started