Show filters
9 Total Results
Displaying 1-9 of 9
Sort by:
Attacker Value
Unknown

CVE-2023-5399

Disclosure Date: October 04, 2023 (last updated October 11, 2023)
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause tampering of files on the personal computer running C-Bus when using the File Command.
Attacker Value
Unknown

CVE-2023-5402

Disclosure Date: October 04, 2023 (last updated October 12, 2023)
A CWE-269: Improper Privilege Management vulnerability exists that could cause a remote code execution when the transfer command is used over the network.
Attacker Value
Unknown

CVE-2021-22748

Disclosure Date: February 11, 2022 (last updated February 23, 2025)
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could allow a remote code execution when a file is saved. Affected Product: C-Bus Toolkit (V1.15.9 and prior), C-Gate Server (V2.11.7 and prior)
Attacker Value
Unknown

CVE-2021-22784

Disclosure Date: July 21, 2021 (last updated February 23, 2025)
A CWE-306: Missing Authentication for Critical Function vulnerability exists in C-Bus Toolkit v1.15.8 and prior that could allow an attacker to use a crafted webpage to obtain remote access to the system.
Attacker Value
Unknown

CVE-2021-22719

Disclosure Date: April 13, 2021 (last updated February 22, 2025)
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in C-Bus Toolkit (V1.15.7 and prior) that could allow a remote code execution when a file is uploaded.
Attacker Value
Unknown

CVE-2021-22718

Disclosure Date: April 13, 2021 (last updated February 22, 2025)
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in C-Bus Toolkit (V1.15.7 and prior) that could allow a remote code execution when restoring project files.
Attacker Value
Unknown

CVE-2021-22716

Disclosure Date: April 13, 2021 (last updated February 22, 2025)
A CWE-732: Incorrect Permission Assignment for Critical Resource vulnerability exists that could allow remote code execution when an unprivileged user modifies a file. Affected Product: C-Bus Toolkit (V1.15.9 and prior)
Attacker Value
Unknown

CVE-2021-22720

Disclosure Date: April 13, 2021 (last updated February 22, 2025)
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in C-Bus Toolkit (V1.15.7 and prior) that could allow a remote code execution when restoring a project.
Attacker Value
Unknown

CVE-2021-22717

Disclosure Date: April 13, 2021 (last updated February 22, 2025)
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in C-Bus Toolkit (V1.15.7 and prior) that could allow a remote code execution when processing config files.