Vendor
LOGINT
Products
2
CVEs
4
Across products
6
Status
Private
Products
2- 4 CVEs
- 2 CVEs
Recent CVEs
4| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-32212 | Hig | 0.53 | 8.1 | 0.01 | May 1, 2024 | SQL Injection vulnerability in LOGINT LoMag Inventory Management v1.0.20.120 and before allows an attacker to execute arbitrary code via the ArticleGetGroups, DocAddDocument, ClassClickShop and frmSettings components. | ||
| CVE-2024-32211 | Med | 0.36 | 5.5 | 0.00 | May 1, 2024 | An issue in LOGINT LoMag Inventory Management v1.0.20.120 and before allows a local attacker to obtain sensitive information via the UserClass.cs and Settings.cs components. | ||
| CVE-2024-32213 | Med | 0.35 | 5.3 | 0.01 | May 1, 2024 | The LoMag WareHouse Management application version 1.0.20.120 and older were found to allow weak passwords. By default, hard-coded passwords of 10 characters with little or no complexity are allowed. | ||
| CVE-2024-32210 | Med | 0.34 | 5.3 | 0.00 | May 1, 2024 | The LoMag WareHouse Management application version 1.0.20.120 and older were to utilize hard-coded passwords by default for forms and SQL connections. |
- risk 0.53cvss 8.1epss 0.01
SQL Injection vulnerability in LOGINT LoMag Inventory Management v1.0.20.120 and before allows an attacker to execute arbitrary code via the ArticleGetGroups, DocAddDocument, ClassClickShop and frmSettings components.
- risk 0.36cvss 5.5epss 0.00
An issue in LOGINT LoMag Inventory Management v1.0.20.120 and before allows a local attacker to obtain sensitive information via the UserClass.cs and Settings.cs components.
- risk 0.35cvss 5.3epss 0.01
The LoMag WareHouse Management application version 1.0.20.120 and older were found to allow weak passwords. By default, hard-coded passwords of 10 characters with little or no complexity are allowed.
- risk 0.34cvss 5.3epss 0.00
The LoMag WareHouse Management application version 1.0.20.120 and older were to utilize hard-coded passwords by default for forms and SQL connections.