Viessmann
viessmann
3 CVEs • 2 products
Products (2)
Click to collapseToggle
Products (2)
Click to collapse
CVEs (3)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Viessmann 1Vitogate 300 Firmware Jun 17, 2026 Oct 23, 2023 N/A· v4 6.5 MEDIUM· v3 3.3 LOW· v2 A vulnerability was found in Viessmann Vitogate 300 up to 2.1.3.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /cgi-bin/. The manipulation leads to direct request. The e...Show more |
1Viessmann 1Vitogate 300 Firmware Jun 17, 2026 Oct 14, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 In Vitogate 300 2.1.3.0, /cgi-bin/vitogate.cgi allows an unauthenticated attacker to bypass authentication and execute arbitrary commands via shell metacharacters in the ipaddr params JSON data for the put method. |
1Viessmann 1Vitogate 300 Firmware Jun 17, 2026 Sep 27, 2023 N/A· v4 9.8 CRITICAL· v3 5.8 MEDIUM· v2 A vulnerability classified as critical was found in Viessmann Vitogate 300 up to 2.1.3.0. This vulnerability affects the function isValidUser of the file /cgi-bin/vitogate.cgi of the component Web Management Interface. T...Show more |