← Back

Geniecompany

geniecompany

3 CVEs • 3 products

Products (3)

Click to collapse
Toggle

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Geniecompany
1Aladdin Connect Garage Door Opener Firmware
Jun 17, 2026
Jan 3, 2024
N/A· v4
8.2 HIGH· v3
N/A· v2
Unauthenticated access permitted to web interface page The Genie Company Aladdin Connect (Retrofit-Kit Model ALDCM) "Garage Door Control Module Setup" and modify the Garage door's SSID settings.
1Geniecompany
1Aladdin Connect Garage Door Opener Firmware
Jun 17, 2026
Jan 3, 2024
N/A· v4
8.8 HIGH· v3
N/A· v2
When the Genie Company Aladdin Connect garage door opener (Retrofit-Kit Model ALDCM) is placed into configuration mode the web servers “Garage Door Control Module Setup” page is vulnerable to XSS via a broadcast SSID nam...Show more
When the Genie Company Aladdin Connect garage door opener (Retrofit-Kit Model ALDCM) is placed into configuration mode the web servers “Garage Door Control Module Setup” page is vulnerable to XSS via a broadcast SSID name containing malicious code with client side Java Script and/or HTML. This allows the attacker to inject malicious code with client side Java Script and/or HTML into the users' web browser.  Show less
1Geniecompany
1Aladdin Connect
Jun 17, 2026
Jan 3, 2024
N/A· v4
6.8 MEDIUM· v3
N/A· v2
Users’ product account authentication data was stored in clear text in The Genie Company Aladdin Connect Mobile Application Version 5.65 Build 2075 (and below) on Android Devices. This allows the attacker, with access to...Show more
Users’ product account authentication data was stored in clear text in The Genie Company Aladdin Connect Mobile Application Version 5.65 Build 2075 (and below) on Android Devices. This allows the attacker, with access to the android device, to potentially retrieve users' clear text authentication credentials. Show less