← Back

Remkon Device Manager

remkon_device_manager

Vendor: Nascent • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Nascent
1Remkon Device Manager
Jun 17, 2026
Aug 24, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
The assets/index.php Image Upload feature of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to upload any code to the target system and achieve remote code execution.
1Nascent
1Remkon Device Manager
Jun 17, 2026
Aug 24, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In NASCENT RemKon Device Manager 4.0.0.0, a Directory Traversal vulnerability in a log-reading function in maintenance/readLog.php allows an attacker to read any file via a specialized URL.
1Nascent
1Remkon Device Manager
Jun 17, 2026
Aug 24, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
A command-injection vulnerability in the Image Upload function of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to execute arbitrary commands, as root, via shell metacharacters in the filename parameter to a...Show more
A command-injection vulnerability in the Image Upload function of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to execute arbitrary commands, as root, via shell metacharacters in the filename parameter to assets/index.php.Show less