Kramerav
kramerav
8 CVEs • 5 products
Products (5)
Click to collapseToggle
Products (5)
Click to collapse
CVEs (8)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Kramerav 2Via Connect2 Firmware Via Go2 FirmwareNov 21, 2024 Aug 9, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 In instances where the screen is visible and remote mouse connection is enabled, KramerAV VIA Connect (2) and VIA Go (2) devices with a version prior to 4.0.1.1326 can be exploited to achieve local code execution at the...Show more |
1Kramerav 2Via Connect2 Firmware Via Go2 FirmwareNov 21, 2024 Aug 9, 2023 N/A· v4 9.1 CRITICAL· v3 N/A· v2 KramerAV VIA Connect (2) and VIA Go (2) devices with a version prior to 4.0.1.1326 exhibit a vulnerability that enables remote manipulation of the device. This vulnerability involves extracting the connection confirmatio...Show more |
KramerAV VIA GO² < 4.0.1.1326 is vulnerable to SQL Injection. |
KramerAV VIA GO² < 4.0.1.1326 is vulnerable to unauthenticated file upload resulting in Remote Code Execution (RCE). |
KramerAV VIA GO² < 4.0.1.1326 is vulnerable to Unauthenticated arbitrary file read. |
KRAMER VIAware through August 2021 allows remote attackers to execute arbitrary code because ajaxPages/writeBrowseFilePathAjax.php accepts arbitrary executable pathnames (even though browseSystemFiles.php is no longer re...Show more |
KramerAV VIAWare, all tested versions, allow privilege escalation through misconfiguration of sudo. Sudoers permits running of multiple dangerous commands, including unzip, systemctl and dpkg. |
Kramer VIAware 2.5.0719.1034 has Incorrect Access Control. |