Blaauwproducts

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 9
    Known Exploited: 0
    2
    Critical Level Threats
    5
    High Level Threats
    2
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2019-18869

    Leftover Debug Code in Blaauw Remote Kiln Control through v3.00r4 allows a user to execute arbitrary php code via /default.php?idx=17.

    Last Modified: Nov 21, 2024
    Published: May 07, 2020

    CVE-2019-18871

    A path traversal in debug.php accessed via default.php in Blaauw Remote Kiln Control through v3.00r4 allows an authenticated attacker to upload arbitrary files, leading to arbitrary remote code execution.

    Last Modified: Nov 21, 2024
    Published: May 07, 2020

    CVE-2019-18870

    A path traversal via the iniFile parameter in excel.php in Blaauw Remote Kiln Control through v3.00r4 allows an authenticated attacker to download arbitrary files from the host machine.

    Last Modified: Nov 21, 2024
    Published: May 07, 2020

    CVE-2019-18872

    Weak password requirements in Blaauw Remote Kiln Control through v3.00r4 allow a user to set short or guessable passwords (e.g., 1 or 1234).

    Last Modified: Nov 21, 2024
    Published: May 07, 2020

    CVE-2019-18866

    Unauthenticated SQL injection via the username in the login mechanism in Blaauw Remote Kiln Control through v3.00r4 allows a user to extract arbitrary data from the rkc database.

    Last Modified: Nov 21, 2024
    Published: May 07, 2020
    Items Per Page
    Blaauwproducts Vulnerabilities & Security CVEs | CVE-DB