← Back

Mesalabs

mesalabs

5 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Amegaview
amegaview

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Mesalabs
1Amegaview
Nov 21, 2024
Dec 21, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Mesa Labs AmegaView Versions 3.0 uses default cookies that could be set to bypass authentication to the web application, which may allow an attacker to gain access.
1Mesalabs
1Amegaview
Nov 21, 2024
Dec 21, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Mesa Labs AmegaView Versions 3.0 and prior’s passcode is generated by an easily reversible algorithm, which may allow an attacker to gain access to the device.
1Mesalabs
1Amegaview
Nov 21, 2024
Dec 21, 2021
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
Mesa Labs AmegaView Versions 3.0 and prior has a command injection vulnerability that can be exploited to execute commands in the web server.
1Mesalabs
1Amegaview
Nov 21, 2024
Dec 21, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Mesa Labs AmegaView version 3.0 is vulnerable to a command injection, which may allow an attacker to remotely execute arbitrary code.
1Mesalabs
1Amegaview
Nov 21, 2024
Dec 21, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Mesa Labs AmegaView Versions 3.0 and prior has insecure file permissions that could be exploited to escalate privileges on the device.