Filtered by vendor Resourcexpress
Subscribe
Total
3 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2020-28898 | 1 Resourcexpress | 1 Resourcexpress | 2024-02-04 | 5.0 MEDIUM | 5.3 MEDIUM |
In QED ResourceXpress through 4.9k, a large numeric or alphanumeric value submitted in specific URL parameters causes a server error in script execution due to insufficient input validation. | |||||
CVE-2020-25746 | 1 Resourcexpress | 2 Qubi3, Qubi3 Firmware | 2024-02-04 | 2.1 LOW | 4.6 MEDIUM |
QED ResourceXpress Qubi3 devices before 1.40.9 could allow a local attacker (with physical access to the device) to obtain sensitive information via the debug interface (keystrokes over a USB cable), aka wireless password visibility. | |||||
CVE-2020-13877 | 1 Resourcexpress | 1 Meeting Monitor | 2024-02-04 | 7.5 HIGH | 9.8 CRITICAL |
SQL Injection issues in various ASPX pages of ResourceXpress Meeting Monitor 4.9 could lead to remote code execution and information disclosure. |