Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

CVE-2024-12286

Disclosure Date: December 10, 2024 (last updated December 21, 2024)
MOBATIME Network Master Clock - DTS 4801 allows attackers to use SSH to gain initial access using default credentials.
0
Attacker Value
Unknown

CVE-2023-3066

Disclosure Date: June 05, 2023 (last updated October 08, 2023)
Incorrect Authorization vulnerability in Mobatime mobile application AMXGT100 allows a low-privileged user to impersonate anyone else, including administratorsThis issue affects Mobatime mobile application AMXGT100: through 1.3.20.
Attacker Value
Unknown

CVE-2023-3065

Disclosure Date: June 05, 2023 (last updated October 08, 2023)
Improper Authentication vulnerability in Mobatime mobile application AMXGT100 allows Authentication Bypass.This issue affects Mobatime mobile application AMXGT100 through 1.3.20.
Attacker Value
Unknown

CVE-2023-3064

Disclosure Date: June 05, 2023 (last updated October 08, 2023)
Anonymous user may get the list of existing users managed by the application, that could ease further attacks (see CVE-2023-3065 and 3066)This issue affects Mobatime mobile application AMXGT100 through 1.3.20.
Attacker Value
Unknown

CVE-2023-3033

Disclosure Date: June 02, 2023 (last updated October 08, 2023)
Incorrect Authorization vulnerability in Mobatime web application allows Privilege Escalation, Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Mobatime web application: through 06.7.22.
Attacker Value
Unknown

CVE-2023-3032

Disclosure Date: June 02, 2023 (last updated October 08, 2023)
Unrestricted Upload of File with Dangerous Type vulnerability in Mobatime web application (Documentary proof upload modules) allows a malicious user to Upload a Web Shell to a Web Server.This issue affects Mobatime web application: through 06.7.22.