Show filters
62 Total Results
Displaying 1-10 of 62
Sort by:
Attacker Value
Unknown
CVE-2024-32931
Disclosure Date: August 01, 2024 (last updated August 10, 2024)
Under certain circumstances the exacqVision Web Service can expose authentication token details within communications.
0
Attacker Value
Unknown
CVE-2024-32865
Disclosure Date: August 01, 2024 (last updated August 10, 2024)
Under certain circumstances the exacqVision Server will not properly validate TLS certificates provided by connected devices.
0
Attacker Value
Unknown
CVE-2024-32862
Disclosure Date: August 01, 2024 (last updated August 10, 2024)
Under certain circumstances the ExacqVision Web Services does not provide sufficient protection from untrusted domains.
0
Attacker Value
Unknown
CVE-2024-32758
Disclosure Date: August 01, 2024 (last updated August 10, 2024)
Under certain circumstances the communication between exacqVision Client and exacqVision Server will use insufficient key length and exchange
0
Attacker Value
Unknown
CVE-2024-32864
Disclosure Date: August 01, 2024 (last updated August 10, 2024)
Under certain circumstances exacqVision Web Services will not enforce secure web communications (HTTPS)
0
Attacker Value
Unknown
CVE-2024-32863
Disclosure Date: August 01, 2024 (last updated August 10, 2024)
Under certain circumstances the exacqVision Web Services may be susceptible to Cross-Site Request Forgery (CSRF)
0
Attacker Value
Unknown
CVE-2024-0912
Disclosure Date: June 06, 2024 (last updated July 19, 2024)
Under certain circumstances the Microsoft® Internet Information Server (IIS) used to host the C•CURE 9000 Web Server will log Microsoft Windows credential details within logs. There is no impact to non-web service interfaces C•CURE 9000 or prior versions
0
Attacker Value
Unknown
CVE-2024-0242
Disclosure Date: February 08, 2024 (last updated February 16, 2024)
Under certain circumstances IQ Panel4 and IQ4 Hub panel software prior to version 4.4.2 could allow unauthorized access to settings.
0
Attacker Value
Unknown
CVE-2023-0248
Disclosure Date: December 14, 2023 (last updated December 22, 2023)
An attacker with physical access to the Kantech Gen1 ioSmart card reader with firmware version prior to 1.07.02 in certain circumstances can recover the reader's communication memory between the card and reader.
0
Attacker Value
Unknown
CVE-2023-4486
Disclosure Date: December 07, 2023 (last updated December 20, 2023)
Under certain circumstances, invalid authentication credentials could be sent to the login endpoint of Johnson Controls Metasys NAE55, SNE, and SNC engines prior to
versions 11.0.6 and 12.0.4
and Facility Explorer F4-SNC engines prior to versions 11.0.6 and 12.0.4 to cause denial-of-service.
0