UnisoonCVEs & Vulnerabilities
3 CVEs affecting Unisoon products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
3 CVEs→ All vendors
Most Affected Products
ultralog express 3ultralog express firmware 3
CVE-2020-3936CRITICAL
UltraLog Express device management interface does not properly filter user inputted string in some specific parameters, attackers can inject arbitrary SQL command.
27 Mar 2020
9.8
CVSS
CVE-2020-3921HIGH
UltraLog Express device management software stores user’s information in cleartext. Any user can obtain accounts information through a specific page.
27 Mar 2020
7.5
CVSS
CVE-2020-3920HIGH
UltraLog Express device management interface does not properly perform access authentication in some specific pages/functions. Any user can access the privileged page to manage accounts through specific system directory.
27 Mar 2020
8.1
CVSS
← PrevPage 1 / 1Next →