Skip to main content

Vendor/product archive

mesalabs / amegaview CVEs

Beta · best-effort

5 CVEs tagged to mesalabs / amegaview2 Critical, 3 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2021-27453

Published Dec 21, 2021

Mesa Labs AmegaView Versions 3.0 uses default cookies that could be set to bypass authentication to the web application, which may allow an attacker to gain access.

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2021-27451

Published Dec 21, 2021

Mesa Labs AmegaView Versions 3.0 and prior’s passcode is generated by an easily reversible algorithm, which may allow an attacker to gain access to the device.

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2021-27449

Published Dec 21, 2021

Mesa Labs AmegaView Versions 3.0 and prior has a command injection vulnerability that can be exploited to execute commands in the web server.

CVSS 9.9 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-27447

Published Dec 21, 2021

Mesa Labs AmegaView version 3.0 is vulnerable to a command injection, which may allow an attacker to remotely execute arbitrary code.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-27445

Published Dec 21, 2021

Mesa Labs AmegaView Versions 3.0 and prior has insecure file permissions that could be exploited to escalate privileges on the device.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1