Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Rely\-Rec_firmware
(Relyum)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 6 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2023-12-13 | CVE-2023-47573 | An issue discovered in Relyum RELY-PCIe 22.2.1 devices. The authorization mechanism is not enforced in the web interface, allowing a low-privileged user to execute administrative functions. | Rely\-Pcie_firmware, Rely\-Rec_firmware | 8.8 | ||
2023-12-13 | CVE-2023-47574 | An issue was discovered on Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices. There is a Weak SMB configuration with signing disabled. | Rely\-Pcie_firmware, Rely\-Rec_firmware | 5.9 | ||
2023-12-13 | CVE-2023-47576 | An issue was discovered in Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices, allowing authenticated command injection through the web interface. | Rely\-Pcie_firmware, Rely\-Rec_firmware | 8.8 | ||
2023-12-13 | CVE-2023-47575 | An issue was discovered on Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices. The web interfaces of the Relyum devices are susceptible to reflected XSS. | Rely\-Pcie_firmware, Rely\-Rec_firmware | 6.1 | ||
2023-12-13 | CVE-2023-47577 | An issue discovered in Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 allows for unauthorized password changes due to no check for current password. | Rely\-Pcie_firmware, Rely\-Rec_firmware | 9.8 | ||
2023-12-13 | CVE-2023-47578 | Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices are susceptible to Cross Site Request Forgery (CSRF) attacks due to the absence of CSRF protection in the web interface. | Rely\-Pcie_firmware, Rely\-Rec_firmware | 8.8 |