Show filters
7 Total Results
Displaying 1-7 of 7
Sort by:
Attacker Value
Very High

CVE-2023-23333

Disclosure Date: February 06, 2023 (last updated October 08, 2023)
There is a command injection vulnerability in SolarView Compact through 6.00, attackers can execute commands by bypassing internal restrictions through downloader.php.
Attacker Value
Unknown

CVE-2023-46509

Disclosure Date: October 27, 2023 (last updated November 01, 2023)
An issue in Contec SolarView Compact v.6.0 and before allows an attacker to execute arbitrary code via the texteditor.php component.
Attacker Value
Unknown

CVE-2023-40924

Disclosure Date: September 08, 2023 (last updated October 08, 2023)
SolarView Compact < 6.00 is vulnerable to Directory Traversal.
Attacker Value
Unknown

CVE-2023-29919

Disclosure Date: May 23, 2023 (last updated October 08, 2023)
SolarView Compact <= 6.0 is vulnerable to Insecure Permissions. Any file on the server can be read or modified because texteditor.php is not restricted.
Attacker Value
Unknown

CVE-2022-44355

Disclosure Date: November 29, 2022 (last updated October 08, 2023)
SolarView Compact 7.0 is vulnerable to Cross-site Scripting (XSS) via /network_test.php.
Attacker Value
Unknown

CVE-2022-44354

Disclosure Date: November 29, 2022 (last updated October 08, 2023)
SolarView Compact 4.0 and 5.0 is vulnerable to Unrestricted File Upload via a crafted php file.
Attacker Value
Unknown

CVE-2022-40881

Disclosure Date: November 17, 2022 (last updated December 22, 2024)
SolarView Compact 6.00 was discovered to contain a command injection vulnerability via network_test.php