VYPR

Easylog Web+

by Multisoft

CVEs (3)

  • CVE-2023-48390Dec 15, 2023
    risk 0.00cvss epss 0.01

    Multisuns EasyLog web+ has a code injection vulnerability. An unauthenticated remote attacker can exploit this vulnerability to inject code and access the system to perform arbitrary system operations or disrupt service.

  • CVE-2023-48389Dec 15, 2023
    risk 0.00cvss epss 0.00

    Multisuns EasyLog web+ has a path traversal vulnerability within its parameter in a specific URL. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication and download arbitrary system files.

  • CVE-2023-48388Dec 15, 2023
    risk 0.00cvss epss 0.01

    Multisuns EasyLog web+ has a vulnerability of using hard-coded credentials. An remote attacker can exploit this vulnerability to access the system to perform arbitrary system operations or disrupt service.