Vulnerabilities (CVE)

Filtered by vendor Netvision Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-3776 1 Netvision 1 Airpass 2025-04-08 N/A 6.1 MEDIUM
The parameter used in the login page of Netvision airPASS is not properly filtered for user input. An unauthenticated remote attacker can insert JavaScript code to the parameter for Reflected Cross-site scripting attacks.
CVE-2023-48383 1 Netvision 1 Airpass 2024-11-21 N/A 7.5 HIGH
NetVision Information airPASS has a path traversal vulnerability within its parameter in a specific URL. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication and download arbitrary system files.