Skip to main content

Vendor archive

secomea CVEs

Beta · best-effort

42 CVEs tagged to vendor secomea6 Critical, 9 High, 23 Medium, 4 Low, 0 Unrated.

CVE-2023-0317

Published Apr 19, 2023

Unprotected Alternate Channel vulnerability in debug console of GateManager allows system administrator to obtain sensitive information.

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-4308

Published Apr 19, 2023

Plaintext Storage of a Password vulnerability in Secomea GateManager (USB wizard) allows Authentication abuse on SiteManager, if the generated file is leaked.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-2752

Published Dec 9, 2022

A vulnerability in the web server of Secomea GateManager allows a local user to impersonate as the previous user under some failed login conditions. This issue affects: Secomea…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-38123

Published Dec 6, 2022

Improper Input Validation of plugin files in Administrator Interface of Secomea GateManager allows a server administrator to inject code into the GateManager interface. This issu…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2022-25786

Published May 4, 2022

Unprotected Alternate Channel vulnerability in debug console of GateManager allows system administrator to obtain sensitive information. This issue affects: GateManager all versio…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-25787

Published May 4, 2022

Information Exposure Through Query Strings in GET Request vulnerability in LMM API of Secomea GateManager allows system administrator to hijack connection. This issue affects: Sec…

CVSS 7.5 · High

CVE-2022-25783

Published May 4, 2022

Insufficient Logging vulnerability in web server of Secomea GateManager allows logged in user to issue improper queries without logging. This issue affects: Secomea GateManager ve…

CVSS 4.3 · Medium

CVE-2022-25782

Published May 4, 2022

Improper Handling of Insufficient Privileges vulnerability in Web UI of Secomea GateManager allows logged in user to access and update privileged information. This issue affects:…

CVSS 5.4 · Medium

CVE-2022-25779

Published May 4, 2022

Logging of Excessive Data vulnerability in audit log of Secomea GateManager allows logged in user to write text entries in audit log. This issue affects: Secomea GateManager versi…

CVSS 4.3 · Medium

CVE-2021-32009

Published Mar 11, 2022

Cross-site Scripting (XSS) vulnerability in firmware section of Secomea GateManager allows logged in user to inject javascript in browser session. This issue affects: Secomea Gate…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-32006

Published Mar 10, 2022

This issue affects: Secomea GateManager Version 9.6.621421014 and all prior versions. Permission Issues vulnerability in LinkManager web portal of Secomea GateManager allows logge…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-32008

Published Mar 4, 2022

This issue affects: Secomea GateManager Version 9.6.621421014 and all prior versions. Improper Limitation of a Pathname to restricted directory, allows logged in GateManager admin…

CVSS 9.9 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-25 of 42 CVEsPage 1 of 2