VYPR

Iq Panel

by Qolsys

CVEs (2)

  • CVE-2015-6033Oct 31, 2015
    risk 0.00cvss epss 0.00

    Qolsys IQ Panel (aka QOL) before 1.5.1 does not verify the digital signatures of software updates, which allows man-in-the-middle attackers to bypass intended access restrictions via a modified update.

  • CVE-2015-6032Oct 31, 2015
    risk 0.00cvss epss 0.01

    Qolsys IQ Panel (aka QOL) before 1.5.1 has hardcoded cryptographic keys, which allows remote attackers to create digital signatures for code by leveraging knowledge of a key from a different installation.