Vulnerabilities (CVE)

Filtered by vendor Resi Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-29538 1 Resi 1 Gemini-net 2023-08-08 5.0 MEDIUM 5.3 MEDIUM
RESI Gemini-Net Web 4.2 is affected by Improper Access Control in authorization logic. An unauthenticated user is able to access some critical resources.
CVE-2022-29540 1 Resi 1 Gemini-net 2022-06-09 4.3 MEDIUM 6.1 MEDIUM
resi-calltrace in RESI Gemini-Net 4.2 is affected by Multiple XSS issues. Unauthenticated remote attackers can inject arbitrary web script or HTML into an HTTP GET parameter that reflects user input without sanitization. This exists on numerous application endpoints,