VYPR
Vendor

Centra

Products
4
CVEs
8
Across products
10
Status
Private

Products

4

Recent CVEs

8
  • CVE-2023-20599HigJun 10, 2025
    risk 0.51cvss 7.9epss 0.00

    Improper register access control in ASP may allow a privileged attacker to perform unauthorized access to ASP’s Crypto Co-Processor (CCP) registers from x86 resulting in potential loss of control of cryptographic key pointer/index leading to loss of integrity or confidentiality.

  • CVE-2025-2818LowJul 17, 2025
    risk 0.23cvss 3.5epss 0.00

    A vulnerability was reported in version 1.0 of the Bluetooth Transmission Alliance protocol adopted by Motorola Smart Connect Android Application that could allow a nearby attacker within the Bluetooth interaction range to intercept files when transferred to a device not paired in Smart Connect.

  • CVE-2023-20516LowSep 6, 2025
    risk 0.21cvss 3.3epss 0.00

    Improper handling of insufficiency privileges in the ASP could allow a privileged attacker to modify Translation Map Registers (TMRs) potentially resulting in loss of confidentiality or integrity.

  • CVE-2023-31326LowSep 6, 2025
    risk 0.18cvss 2.8epss 0.00

    Use of an uninitialized variable in the ASP could allow an attacker to access leftover data from a trusted execution environment (TEE) driver, potentially leading to loss of confidentiality.

  • CVE-2026-1653Mar 11, 2026
    risk 0.00cvss epss 0.00

    A potential divide by zero vulnerability was reported in the Lenovo Virtual Bus driver used in Smart Connect that could allow a local authenticated user to cause a Windows blue screen error.

  • CVE-2026-1652Mar 11, 2026
    risk 0.00cvss epss 0.00

    A potential buffer overflow vulnerability was reported in the Lenovo Virtual Bus driver used in Smart Connect that could allow a local authenticated user to corrupt memory and cause a Windows blue screen error.

  • CVE-2005-1104May 2, 2005
    risk 0.00cvss epss 0.00

    Multiple cross-site scripting (XSS) vulnerabilities in Centra 7 allow remote attackers to inject arbitrary web script or HTML via the (1) username, (2) first name, or (3) last name fields.

  • CVE-2001-1550Dec 31, 2001
    risk 0.00cvss epss 0.00

    CentraOne 5.2 and Centra ASP with basic authentication enabled creates world-writable base64 encoded log files, which allows local users to obtain cleartext passwords from decoded log files and impersonate users.