Filtered by vendor Airangel Subscriptions
Filtered by product Hsmx-app-1000 Subscriptions
Total 5 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-40521 1 Airangel 10 Hsmx-app-100, Hsmx-app-1000, Hsmx-app-1000 Firmware and 7 more 2024-11-21 9.8 Critical
Airangel HSMX Gateway devices through 5.2.04 allow Remote Code Execution.
CVE-2021-40520 1 Airangel 10 Hsmx-app-100, Hsmx-app-1000, Hsmx-app-1000 Firmware and 7 more 2024-11-21 9.8 Critical
Airangel HSMX Gateway devices through 5.2.04 have Weak SSH Credentials.
CVE-2021-40519 1 Airangel 10 Hsmx-app-100, Hsmx-app-1000, Hsmx-app-1000 Firmware and 7 more 2024-11-21 10.0 Critical
Airangel HSMX Gateway devices through 5.2.04 have Hard-coded Database Credentials.
CVE-2021-40518 1 Airangel 10 Hsmx-app-100, Hsmx-app-1000, Hsmx-app-1000 Firmware and 7 more 2024-11-21 6.5 Medium
Airangel HSMX Gateway devices through 5.2.04 allow CSRF.
CVE-2021-40517 1 Airangel 10 Hsmx-app-100, Hsmx-app-1000, Hsmx-app-1000 Firmware and 7 more 2024-11-21 5.4 Medium
Airangel HSMX Gateway devices through 5.2.04 is vulnerable to stored Cross Site Scripting. XSS Payload is placed in the name column of the updates table using database access.