Vulnerabilities (CVE)

Filtered by vendor Nortekcontrol Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-31798 1 Nortekcontrol 2 Emerge E3, Emerge E3 Firmware 2023-08-08 N/A 6.1 MEDIUM
Nortek Linear eMerge E3-Series 0.32-07p devices are vulnerable to /card_scan.php?CardFormatNo= XSS with session fixation (via PHPSESSID) when they are chained together. This would allow an attacker to take over an admin account or a user account.
CVE-2019-7255 1 Nortekcontrol 4 Linear Emerge Elite, Linear Emerge Elite Firmware, Linear Emerge Essential and 1 more 2019-11-12 4.3 MEDIUM 6.1 MEDIUM
Linear eMerge E3-Series devices allow XSS.