VYPR

Secflow 1v Firmware

by RAD

CVEs (2)

  • CVE-2020-13259HigSep 16, 2020
    risk 0.61cvss 8.8epss 0.05

    A vulnerability in the web-based management interface of RAD SecFlow-1v os-image SF_0290_2.3.01.26 could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CSRF…

  • CVE-2020-13260MedSep 17, 2020
    risk 0.43cvss 6.1epss 0.02

    A vulnerability in the web-based management interface of RAD SecFlow-1v through 2020-05-21 could allow an authenticated attacker to upload a JavaScript file, with a stored XSS payload, that will remain stored in the system as an OVPN file in…