Starface

    Dashboard / Vendors

    Products: 2
    Vulnerabilities: 2
    Known Exploited: 0
    1
    Critical Level Threats
    1
    High Level Threats
    0
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2023-33243

    RedTeam Pentesting discovered that the web interface of STARFACE as well as its REST API allows authentication using the SHA512 hash of the password instead of the cleartext password. While storing password hashes instead of cleartext passwords in an application's database generally has become best practice to protect users' passwords in case of a database compromise, this is rendered ineffective when allowing to authenticate using the password hash.

    Last Modified: Dec 12, 2024
    Published: Jun 15, 2023

    CVE-2020-10515

    STARFACE UCC Client before 6.7.1.204 on WIndows allows binary planting to execute code with System rights, aka usd-2020-0006.

    Last Modified: Nov 21, 2024
    Published: Apr 02, 2020
    Items Per Page
    Starface Vulnerabilities & Security CVEs | CVE-DB