Skip to main content

Vendor/product archive

megafeis / bofei_dbd+ CVEs

Beta · best-effort

3 CVEs tagged to megafeis / bofei_dbd+1 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2022-45636

Published Mar 21, 2023

An issue discovered in MEGAFEIS, BOFEI DBD+ Application for IOS & Android v1.4.4 allows attacker to unlock model(s) without authorization via arbitrary API requests.

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2022-45637

Published Mar 21, 2023

An insecure password reset issue discovered in MEGAFEIS, BOFEI DBD+ Application for IOS & Android v1.4.4 service via insecure expiry mechanism.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2022-45635

Published Mar 21, 2023

An issue discovered in MEGAFEIS, BOFEI DBD+ Application for IOS & Android v1.4.4 allows attacker to gain access to sensitive account information via insecure password policy.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1