Show filters
19 Total Results
Displaying 11-19 of 19
Sort by:
Attacker Value
Unknown

CVE-2022-29298

Disclosure Date: May 12, 2022 (last updated October 07, 2023)
SolarView Compact ver.6.00 allows attackers to access sensitive files via directory traversal.
Attacker Value
Unknown

CVE-2021-20661

Disclosure Date: February 24, 2021 (last updated November 28, 2024)
Directory traversal vulnerability in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows authenticated attackers to delete arbitrary files and/or directories on the server via unspecified vectors.
Attacker Value
Unknown

CVE-2021-20659

Disclosure Date: February 24, 2021 (last updated November 28, 2024)
SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an authenticated attacker to upload arbitrary files via unspecified vectors. If the file is PHP script, an attacker may execute arbitrary code.
Attacker Value
Unknown

CVE-2021-20657

Disclosure Date: February 24, 2021 (last updated November 28, 2024)
Improper access control vulnerability in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an authenticated attacker to obtain and/or alter the setting information without the access privilege via unspecified vectors.
Attacker Value
Unknown

CVE-2021-20656

Disclosure Date: February 24, 2021 (last updated November 28, 2024)
Exposure of information through directory listing in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an authenticated attacker to obtain the information inside the system, such as directories and/or file configurations via unspecified vectors.
Attacker Value
Unknown

CVE-2021-20662

Disclosure Date: February 24, 2021 (last updated November 28, 2024)
Missing authentication for critical function in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an attacker to alter the setting information without the access privileges via unspecified vectors.
Attacker Value
Unknown

CVE-2021-20660

Disclosure Date: February 24, 2021 (last updated November 28, 2024)
Cross-site scripting vulnerability in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an attacker to inject an arbitrary script via unspecified vectors.
Attacker Value
Unknown

CVE-2021-20658

Disclosure Date: February 24, 2021 (last updated November 28, 2024)
SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an attacker to execute arbitrary OS commands with the web server privilege via unspecified vectors.
Attacker Value
Unknown

CVE-2014-2324

Disclosure Date: March 14, 2014 (last updated October 05, 2023)
Multiple directory traversal vulnerabilities in (1) mod_evhost and (2) mod_simple_vhost in lighttpd before 1.4.35 allow remote attackers to read arbitrary files via a .. (dot dot) in the host name, related to request_check_hostname.
0