CVEs (4)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Hereta 1Eth Imc408m Firmware Apr 10, 2026 Mar 16, 2026 5.1 MEDIUM· v4 4.3 MEDIUM· v3 N/A· v2 Hereta ETH-IMC408M firmware version 1.0.15 and prior contain a cross-site request forgery vulnerability that allows attackers to modify device configuration by exploiting missing CSRF protections in setup.cgi. Attackers...Show more |
1Hereta 1Eth Imc408m Firmware Apr 10, 2026 Mar 16, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Hereta ETH-IMC408M firmware version 1.0.15 and prior contain a reflected cross-site scripting vulnerability in the Network Diagnosis ping function that allows attackers to execute arbitrary JavaScript. Attackers can craf...Show more |
1Hereta 1Eth Imc408m Firmware Apr 10, 2026 Mar 16, 2026 5.1 MEDIUM· v4 5.4 MEDIUM· v3 N/A· v2 Hereta ETH-IMC408M firmware version 1.0.15 and prior contain a stored cross-site scripting vulnerability that allows authenticated attackers to inject arbitrary JavaScript by manipulating the Device Location field. Attac...Show more |
1Hereta 1Eth Imc408m Firmware Apr 10, 2026 Mar 16, 2026 5.1 MEDIUM· v4 5.4 MEDIUM· v3 N/A· v2 Hereta ETH-IMC408M firmware version 1.0.15 and prior contain a stored cross-site scripting vulnerability that allows authenticated attackers to inject arbitrary JavaScript by manipulating the Device Name field. Attackers...Show more |