controlbyweb CVE Vulnerabilities & CVE List (5)

Products (CPE): — CVEs: 5

controlbyweb vulnerability overview

Aggregates CVE and security vulnerability intelligence across all controlbyweb-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk cross-site scripting and vendor risk denial of service and related security problems, affecting vendor surface production workloads and vendor surface software deployment scenarios.

Vulnerability distribution trend (last 24 months)

Showing 15 of 5 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2023-6333 The affected ControlByWeb Relay products are vulnerable to a stored cross-site scripting vulnerability, which could allow an attacker to inject arbitrary scripts into the endpoint of a web interface that could run malicious javascript code during a user's session. [email protected] 7.5 0.03% 2023-12-07 2024-11-21
CVE-2023-23553 Control By Web X-400 devices are vulnerable to a cross-site scripting attack, which could result in private and session information being transferred to the attacker. [email protected] 4.5 0.26% 2023-02-13 2024-11-21
CVE-2023-23551 Control By Web X-600M devices run Lua scripts and are vulnerable to code injection, which could allow an attacker to remotely execute arbitrary code. [email protected] 9.1 0.71% 2023-02-13 2024-11-21
CVE-2018-18882 A stored cross-site scripting (XSS) issue was discovered in ControlByWeb X-320M-I Web-Enabled Instrumentation-Grade Data Acquisition module 1.05 with firmware revision v1.05. An authenticated user can inject arbitrary script via setup.html in the web interface. [email protected] 5.4 0.30% 2019-03-21 2024-11-21
CVE-2018-18881 A Denial of Service (DOS) issue was discovered in ControlByWeb X-320M-I Web-Enabled Instrumentation-Grade Data Acquisition module 1.05 with firmware revision v1.05. An authenticated user can configure invalid network settings, stopping TCP based communications to the device. A physical factory reset is required to restore the device to an operational state. [email protected] 6.5 0.42% 2019-03-21 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence