VYPR

Linear Emerge E3 Access Control Firmware

by Niceforyou

CVEs (4)

  • CVE-2022-38627CriJan 3, 2023
    risk 0.64cvss 9.8epss 0.04

    Nortek Linear eMerge E3-Series 0.32-08f, 0.32-07p, 0.32-07e, 0.32-09c, 0.32-09b, 0.32-09a, and 0.32-08e were discovered to contain a SQL injection vulnerability via the idt parameter.

  • CVE-2022-46381MedDec 13, 2022
    risk 0.40cvss 6.1epss 0.02

    Certain Linear eMerge E3-Series devices are vulnerable to XSS via the type parameter (e.g., to the badging/badge_template_v0.php component). This affects 0.32-08f, 0.32-07p, 0.32-07e, 0.32-09c, 0.32-09b, 0.32-09a, and 0.32-08e.

  • CVE-2022-38628MedDec 13, 2022
    risk 0.40cvss 6.1epss 0.01

    Nortek Linear eMerge E3-Series 0.32-08f, 0.32-07p, 0.32-07e, 0.32-09c, 0.32-09b, 0.32-09a, and 0.32-08e were discovered to contain a cross-site scripting (XSS) vulnerability which is chained with a local session fixation. This vulnerability allows attackers to escalate…

  • CVE-2022-42710MedJan 3, 2023
    risk 0.35cvss 5.4epss 0.01

    Nice (formerly Nortek) Linear eMerge E3-Series 0.32-08f, 0.32-07p, 0.32-07e, 0.32-09c, 0.32-09b, 0.32-09a, and 0.32-08e devices are vulnerable to Stored Cross-Site Scripting (XSS).