Vulnerabilities (CVE)

Filtered by vendor Auvesy Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-38455 1 Auvesy 1 Versiondog 2021-10-27 4.0 MEDIUM 6.5 MEDIUM
The affected product’s OS Service does not verify any given parameter. A user can supply any type of parameter that will be passed to inner calls without checking the type of the parameter or the value.
CVE-2021-38465 1 Auvesy 1 Versiondog 2021-10-27 4.0 MEDIUM 6.5 MEDIUM
The webinstaller is a Golang web server executable that enables the generation of an Auvesy image agent. Resource consumption can be achieved by generating large amounts of installations, which are then saved without limitation in the temp folder of the webinstaller executable.
CVE-2021-38451 1 Auvesy 1 Versiondog 2021-10-27 3.5 LOW 5.7 MEDIUM
The affected product’s proprietary protocol CSC allows for calling numerous function codes. In order to call those function codes, the user must supply parameters. There is no sanitation on the value of the offset, which allows the client to specify any offset and read out-of-bounds data.