Filtered by vendor Domoticz Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2019-15480 1 Domoticz 1 Domoticz 2024-08-05 N/A
Domoticz 4.10717 has XSS via item.Name.
CVE-2019-10664 1 Domoticz 1 Domoticz 2024-08-04 N/A
Domoticz before 4.10578 allows SQL Injection via the idx parameter in CWebServer::GetFloorplanImage in WebServer.cpp.
CVE-2019-10678 1 Domoticz 1 Domoticz 2024-08-04 N/A
Domoticz before 4.10579 neglects to categorize \n and \r as insecure argument options.
CVE-2020-21990 1 Domoticz 1 Mydomoathome 2024-08-04 7.5 High
Emmanuel MyDomoAtHome (MDAH) REST API REST API Domoticz ISS Gateway 0.2.40 is affected by an information disclosure vulnerability due to improper access control enforcement. An unauthenticated remote attacker can exploit this, via a specially crafted request to gain access to sensitive information.