← Back

Sv Cpt Mc310 Firmware

sv-cpt-mc310_firmware

Vendor: Contec • 19 CVEs

CVEs (19)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Contec
2Sv Cpt Mc310 Firmware
Sv Cpt Mc310f Firmware
Jan 31, 2025
May 23, 2023
N/A· v4
4.3 MEDIUM· v3
N/A· v2
Improper access control vulnerability in the system date/time setting page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and SV-CPT-MC310F versions prior to Ver.8.10 allows a remote authenticated attacker...Show more
Improper access control vulnerability in the system date/time setting page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and SV-CPT-MC310F versions prior to Ver.8.10 allows a remote authenticated attacker to alter system date/time of the affected product.Show less
1Contec
2Sv Cpt Mc310 Firmware
Sv Cpt Mc310f Firmware
Jan 31, 2025
May 23, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
OS command injection vulnerability in the mail setting page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and SV-CPT-MC310F versions prior to Ver.8.10 allows remote authenticated attackers to execute an ar...Show more
OS command injection vulnerability in the mail setting page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and SV-CPT-MC310F versions prior to Ver.8.10 allows remote authenticated attackers to execute an arbitrary OS command.Show less
1Contec
2Sv Cpt Mc310 Firmware
Sv Cpt Mc310f Firmware
Jan 31, 2025
May 23, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
Buffer overflow vulnerability in the multiple setting pages of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and SV-CPT-MC310F versions prior to Ver.8.10 allows a remote authenticated attacker to execute arbi...Show more
Buffer overflow vulnerability in the multiple setting pages of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and SV-CPT-MC310F versions prior to Ver.8.10 allows a remote authenticated attacker to execute arbitrary code.Show less
1Contec
2Sv Cpt Mc310 Firmware
Sv Cpt Mc310f Firmware
Jan 16, 2025
May 23, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
OS command injection vulnerability in the download page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and SV-CPT-MC310F versions prior to Ver.8.10 allows a remote authenticated attacker to execute an arbit...Show more
OS command injection vulnerability in the download page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and SV-CPT-MC310F versions prior to Ver.8.10 allows a remote authenticated attacker to execute an arbitrary OS command.Show less
1Contec
2Sv Cpt Mc310 Firmware
Sv Cpt Mc310f Firmware
Nov 21, 2024
May 23, 2023
N/A· v4
7.2 HIGH· v3
N/A· v2
Use of hard-coded credentials exists in SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10, and SV-CPT-MC310F versions prior to Ver.8.10, which may allow a remote authenticated attacker to login the affected produ...Show more
Use of hard-coded credentials exists in SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10, and SV-CPT-MC310F versions prior to Ver.8.10, which may allow a remote authenticated attacker to login the affected product with an administrative privilege and perform an unintended operation.Show less
1Contec
2Sv Cpt Mc310 Firmware
Sv Cpt Mc310f Firmware
Nov 21, 2024
Aug 16, 2022
N/A· v4
8.8 HIGH· v3
N/A· v2
The image file management page of SolarView Compact SV-CPT-MC310 Ver.7.23 and earlier, and SV-CPT-MC310F Ver.7.23 and earlier contains an insufficient verification vulnerability when uploading files. If this vulnerabilit...Show more
The image file management page of SolarView Compact SV-CPT-MC310 Ver.7.23 and earlier, and SV-CPT-MC310F Ver.7.23 and earlier contains an insufficient verification vulnerability when uploading files. If this vulnerability is exploited, arbitrary PHP code may be executed if a remote authenticated attacker uploads a specially crafted PHP file.Show less
1Contec
1Sv Cpt Mc310 Firmware
Nov 21, 2024
Jun 21, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
An arbitrary file upload vulnerability /images/background/1.php in of SolarView Compact 6.0 allows attackers to execute arbitrary code via a crafted php file.
1Contec
1Sv Cpt Mc310 Firmware
Nov 21, 2024
Jun 21, 2022
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
SolarView Compact v6.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component Solar_AiConf.php.
1Contec
1Sv Cpt Mc310 Firmware
Nov 3, 2025
May 12, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
SolarView Compact ver.6.00 was discovered to contain a command injection vulnerability via conf_mail.php.
1Contec
1Sv Cpt Mc310 Firmware
Nov 21, 2024
May 12, 2022
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
SolarView Compact ver.6.00 was discovered to contain a local file disclosure via /html/Solar_Ftp.php.
1Contec
1Sv Cpt Mc310 Firmware
Nov 21, 2024
May 12, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
SolarView Compact ver.6.00 allows attackers to access sensitive files via directory traversal.
1Contec
1Sv Cpt Mc310 Firmware
Nov 21, 2024
Feb 24, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Missing authentication for critical function in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an attacker to alter the setting information without the access privileges via unspecified vectors.
1Contec
1Sv Cpt Mc310 Firmware
Nov 21, 2024
Feb 24, 2021
N/A· v4
8.1 HIGH· v3
5.5 MEDIUM· v2
Directory traversal vulnerability in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows authenticated attackers to delete arbitrary files and/or directories on the server via unspecified vectors.
1Contec
1Sv Cpt Mc310 Firmware
Nov 21, 2024
Feb 24, 2021
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Cross-site scripting vulnerability in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an attacker to inject an arbitrary script via unspecified vectors.
1Contec
1Sv Cpt Mc310 Firmware
Nov 21, 2024
Feb 24, 2021
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an authenticated attacker to upload arbitrary files via unspecified vectors. If the file is PHP script, an attacker may execute arbitrary code.
1Contec
1Sv Cpt Mc310 Firmware
Nov 21, 2024
Feb 24, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an attacker to execute arbitrary OS commands with the web server privilege via unspecified vectors.
1Contec
1Sv Cpt Mc310 Firmware
Nov 21, 2024
Feb 24, 2021
N/A· v4
5.4 MEDIUM· v3
5.5 MEDIUM· v2
Improper access control vulnerability in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an authenticated attacker to obtain and/or alter the setting information without the access privilege via unspecified vector...Show more
Improper access control vulnerability in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an authenticated attacker to obtain and/or alter the setting information without the access privilege via unspecified vectors.Show less
1Contec
1Sv Cpt Mc310 Firmware
Nov 21, 2024
Feb 24, 2021
N/A· v4
4.3 MEDIUM· v3
4.0 MEDIUM· v2
Exposure of information through directory listing in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an authenticated attacker to obtain the information inside the system, such as directories and/or file configura...Show more
Exposure of information through directory listing in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an authenticated attacker to obtain the information inside the system, such as directories and/or file configurations via unspecified vectors.Show less
5Contec
DebianLighttpd+2 more
6Debian Linux
LighttpdLinux Enterprise High Availability Extension+3 more
May 6, 2026
Mar 14, 2014
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Multiple directory traversal vulnerabilities in (1) mod_evhost and (2) mod_simple_vhost in lighttpd before 1.4.35 allow remote attackers to read arbitrary files via a .. (dot dot) in the host name, related to request_che...Show more
Multiple directory traversal vulnerabilities in (1) mod_evhost and (2) mod_simple_vhost in lighttpd before 1.4.35 allow remote attackers to read arbitrary files via a .. (dot dot) in the host name, related to request_check_hostname.Show less