VYPR

Sitemanager Firmware

by Securecomputing

CVEs (3)

  • CVE-2020-29020CriMar 5, 2021
    risk 0.59cvss 9.1epss 0.02

    Improper Access Control vulnerability in web service of Secomea SiteManager allows remote attacker to access the web UI from the internet using the configured credentials. This issue affects: Secomea SiteManager All versions prior to 9.4.620527004 on Hardware.

  • CVE-2021-32003HigAug 5, 2021
    risk 0.52cvss 8.0epss 0.00

    Unprotected Transport of Credentials vulnerability in SiteManager provisioning service allows local attacker to capture credentials if the service is used after provisioning. This issue affects: Secomea SiteManager All versions prior to 9.5 on Hardware.

  • CVE-2021-32002MedAug 5, 2021
    risk 0.28cvss 4.3epss 0.00

    Improper Access Control vulnerability in web service of Secomea SiteManager allows local attacker without credentials to gather network information and configuration of the SiteManager. This issue affects: Secomea SiteManager All versions prior to 9.5 on Hardware.