← Back

Kvm

kvm

Vendor: Jetkvm • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Jetkvm
1Kvm
Jun 17, 2026
Mar 17, 2026
9.3 CRITICAL· v4
7.5 HIGH· v3
N/A· v2
JetKVM before 0.5.4 does not rate limit login requests, enabling brute-force attempts to guess credentials.
1Jetkvm
1Kvm
Jun 17, 2026
Mar 17, 2026
7.0 HIGH· v4
4.7 MEDIUM· v3
N/A· v2
JetKVM prior to 0.5.4 does not verify the authenticity of downloaded firmware files. An attacker-in-the-middle or a compromised update server could modify the firmware and the corresponding SHA256 hash to pass verificati...Show more
JetKVM prior to 0.5.4 does not verify the authenticity of downloaded firmware files. An attacker-in-the-middle or a compromised update server could modify the firmware and the corresponding SHA256 hash to pass verification.Show less