Skip to main content

Vendor archive

elenos CVEs

Beta · best-effort

8 CVEs tagged to vendor elenos0 Critical, 3 High, 4 Medium, 1 Low, 0 Unrated.

CVE-2023-39695

Published Oct 31, 2023

Insufficient session expiration in Elenos ETG150 FM Transmitter v3.12 allows attackers to arbitrarily change transmitter configuration and data after logging out.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-34673

Published Jun 23, 2023

Elenos ETG150 FM transmitter running on version 3.12 was discovered to be leaking SMTP credentials and other sensitive information by exploiting the publicly accessible Memcached…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-34672

Published Jun 23, 2023

Improper Access Control leads to adding a high-privilege user affecting Elenos ETG150 FM transmitter running on version 3.12 by exploiting user's role within the admin profile. An…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-34671

Published Jun 23, 2023

Improper Access Control leads to privilege escalation affecting Elenos ETG150 FM transmitter running on version 3.12 by exploiting user's role in the user profile. An attack could…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1