Skip to main content

Vendor/product archive

socomec / modulys_gp CVEs

Beta · best-effort

8 CVEs tagged to socomec / modulys_gp1 Critical, 4 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2023-41084

Published Sep 18, 2023

Session management within the web application is incorrect and allows attackers to steal session cookies to perform a multitude of actions that the web app allows on the device.

CVSS 10.0 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-40221

Published Sep 18, 2023

The absence of filters when loading some sections in the web application of the vulnerable device allows potential attackers to inject malicious code that will be interpreted when…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-0356

Published Jan 26, 2023

SOCOMEC MODULYS GP Netvision versions 7.20 and prior lack strong encryption for credentials on HTTP connections, which could result in threat actors obtaining sensitive informatio…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1