Vulnerabilities (CVE)

Filtered by vendor Blaauwproducts Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-18865 1 Blaauwproducts 1 Remote Kiln Control 2021-07-21 5.0 MEDIUM 5.3 MEDIUM
Information disclosure via error message discrepancies in authentication functions in Blaauw Remote Kiln Control through v3.00r4 allows an unauthenticated attacker to enumerate valid usernames.
CVE-2019-18870 1 Blaauwproducts 1 Remote Kiln Control 2020-05-12 4.0 MEDIUM 6.5 MEDIUM
A path traversal via the iniFile parameter in excel.php in Blaauw Remote Kiln Control through v3.00r4 allows an authenticated attacker to download arbitrary files from the host machine.