Vulnerabilities (CVE)

Filtered by vendor Deltaww Subscribe
Filtered by product Dialink
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-38424 1 Deltaww 1 Dialink 2021-11-05 6.8 MEDIUM 7.8 HIGH
The tag interface of Delta Electronics DIALink versions 1.2.4.0 and prior is vulnerable to an attacker injecting formulas into the tag data. Those formulas may then be executed when it is opened with a spreadsheet application.
CVE-2021-38416 1 Deltaww 1 Dialink 2021-11-05 4.4 MEDIUM 7.8 HIGH
Delta Electronics DIALink versions 1.2.4.0 and prior insecurely loads libraries, which may allow an attacker to use DLL hijacking and takeover the system where the software is installed.
CVE-2021-38422 1 Deltaww 1 Dialink 2021-11-05 4.6 MEDIUM 7.8 HIGH
Delta Electronics DIALink versions 1.2.4.0 and prior stores sensitive information in cleartext, which may allow an attacker to have extensive access to the application directory and escalate privileges.
CVE-2021-38420 1 Deltaww 1 Dialink 2021-11-05 4.6 MEDIUM 7.8 HIGH
Delta Electronics DIALink versions 1.2.4.0 and prior default permissions give extensive permissions to low-privileged user accounts, which may allow an attacker to modify the installation directory and upload malicious files.