Filtered by vendor Loftware Subscriptions
Total 8 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-37233 1 Loftware 1 Spectrum 2024-09-18 8.8 High
Loftware Spectrum before 4.6 HF14 allows authenticated XXE attacks.
CVE-2023-37234 1 Loftware 1 Spectrum 2024-09-18 7.5 High
Loftware Spectrum through 4.6 has unprotected JMX Registry.
CVE-2023-37232 1 Loftware 1 Spectrum 2024-09-18 7.5 High
Loftware Spectrum through 4.6 exposes Sensitive Information (Logs) to an Unauthorized Actor.
CVE-2023-37231 1 Loftware 1 Spectrum 2024-09-10 9.8 Critical
Loftware Spectrum before 4.6 HF14 uses a Hard-coded Password.
CVE-2023-37230 1 Loftware 1 Spectrum 2024-09-10 8.8 High
Loftware Spectrum (testDeviceConnection) before 5.1 allows SSRF.
CVE-2023-37229 1 Loftware 1 Spectrum 2024-09-10 8.8 High
Loftware Spectrum before 5.1 allows SSRF.
CVE-2023-37227 1 Loftware 1 Spectrum 2024-09-10 9.8 Critical
Loftware Spectrum before 4.6 HF13 Deserializes Untrusted Data.
CVE-2023-37226 1 Loftware 1 Spectrum 2024-09-10 9.8 Critical
Loftware Spectrum before 4.6 HF14 has Missing Authentication for a Critical Function.