RSS   Vulnerabilities for 'Isg-600h firmware'   RSS

2019-03-21
 
CVE-2018-19525

CWE-352
 

 
An issue was discovered on Systrome ISG-600C, ISG-600H, and ISG-800W 1.1-R2.1_TRUNK-20180914.bin devices. There is CSRF via /ui/?g=obj_keywords_add and /ui/?g=obj_keywords_addsave with resultant XSS because of a lack of csrf token validation.

 
2019-02-04
 
CVE-2019-7387

CWE-22
 

 
A local file inclusion vulnerability exists in the web interface of Systrome Cumilon ISG-600C, ISG-600H, and ISG-800W 1.1-R2.1_TRUNK-20180914.bin devices. When the export function is called from system/maintenance/export.php, it accepts the path provided by the user, leading to path traversal via the name parameter.

 

 >>> Vendor: Systrome 6 Products
Isg-600c firmware
Isg-600h firmware
Isg-800w firmware
Cumilon isg-600c firmware
Cumilon isg-600h firmware
Cumilon isg-800w firmware


Copyright 2024, cxsecurity.com

 

Back to Top