Vulnerabilities (CVE)

Filtered by vendor Advantech Subscribe
Filtered by product R-seenet
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-21804 1 Advantech 1 R-seenet 2022-04-28 7.5 HIGH 9.8 CRITICAL
A local file inclusion (LFI) vulnerability exists in the options.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). A specially crafted HTTP request can lead to arbitrary PHP code execution. An attacker can send a crafted HTTP request to trigger this vulnerability.
CVE-2021-21805 1 Advantech 1 R-seenet 2022-04-28 10.0 HIGH 9.8 CRITICAL
An OS Command Injection vulnerability exists in the ping.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). A specially crafted HTTP request can lead to arbitrary OS command execution. An attacker can send a crafted HTTP request to trigger this vulnerability.