Vulnerabilities (CVE)

Filtered by vendor Ismartalarm Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-7730 1 Ismartalarm 2 Cubeone, Cubeone Firmware 2021-08-25 7.8 HIGH 7.5 HIGH
iSmartAlarm cube devices allow Denial of Service. Sending a SYN flood on port 12345 will freeze the "cube" and it will stop responding.
CVE-2017-7726 1 Ismartalarm 2 Cubeone, Cubeone Firmware 2021-08-25 5.0 MEDIUM 7.5 HIGH
iSmartAlarm cube devices have an SSL Certificate Validation Vulnerability.
CVE-2017-7729 1 Ismartalarm 2 Cubeone, Cubeone Firmware 2021-08-25 5.0 MEDIUM 7.5 HIGH
On iSmartAlarm cube devices, there is Incorrect Access Control because a "new key" is transmitted in cleartext.
CVE-2017-13663 1 Ismartalarm 2 Cubeone, Cubeone Firmware 2019-10-03 5.0 MEDIUM 7.5 HIGH
Encryption key exposure in firmware in iSmartAlarm CubeOne version 2.2.4.8 and earlier allows attackers to decrypt log files via an exposed key.