Unistream Unilogic
by Unitronics
CVEs (8)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-27767 | Cri | 0.65 | 10.0 | 0.01 | Mar 18, 2024 | CWE-287: Improper Authentication may allow Authentication Bypass | ||
| CVE-2024-27768 | Cri | 0.64 | 9.8 | 0.01 | Mar 18, 2024 | Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-22: 'Path Traversal' may allow RCE | ||
| CVE-2024-27773 | Hig | 0.57 | 8.8 | 0.00 | Mar 18, 2024 | Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-348: Use of Less Trusted Source may allow RCE | ||
| CVE-2024-27772 | Hig | 0.57 | 8.8 | 0.02 | Mar 18, 2024 | Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-78: 'OS Command Injection' may allow RCE | ||
| CVE-2024-27771 | Hig | 0.57 | 8.8 | 0.01 | Mar 18, 2024 | Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-22: 'Path Traversal' may allow RCE | ||
| CVE-2024-27770 | Hig | 0.57 | 8.8 | 0.01 | Mar 18, 2024 | Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-23: Relative Path Traversal | ||
| CVE-2024-27769 | Hig | 0.57 | 8.8 | 0.01 | Mar 18, 2024 | Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor may allow Taking Ownership Over Devices | ||
| CVE-2024-27774 | Hig | 0.49 | 7.5 | 0.00 | Mar 18, 2024 | Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-259: Use of Hard-coded Password may allow disclosing Sensitive Information Embedded inside Device's Firmware |
- risk 0.65cvss 10.0epss 0.01
CWE-287: Improper Authentication may allow Authentication Bypass
- risk 0.64cvss 9.8epss 0.01
Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-22: 'Path Traversal' may allow RCE
- risk 0.57cvss 8.8epss 0.00
Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-348: Use of Less Trusted Source may allow RCE
- risk 0.57cvss 8.8epss 0.02
Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-78: 'OS Command Injection' may allow RCE
- risk 0.57cvss 8.8epss 0.01
Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-22: 'Path Traversal' may allow RCE
- risk 0.57cvss 8.8epss 0.01
Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-23: Relative Path Traversal
- risk 0.57cvss 8.8epss 0.01
Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor may allow Taking Ownership Over Devices
- risk 0.49cvss 7.5epss 0.00
Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-259: Use of Hard-coded Password may allow disclosing Sensitive Information Embedded inside Device's Firmware