Skip to main content

Vendor/product archive

rangee / rangeeos CVEs

Beta · best-effort

4 CVEs tagged to rangee / rangeeos1 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2020-16282

Published Aug 20, 2020

In the default configuration of Rangee GmbH RangeeOS 8.0.4, all components are executed in the context of the privileged root user. This may allow a local attacker to break out of…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-16281

Published Aug 20, 2020

The Kommbox component in Rangee GmbH RangeeOS 8.0.4 could allow a local authenticated attacker to escape from the restricted environment and execute arbitrary code due to unrestri…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-16280

Published Aug 20, 2020

Multiple Rangee GmbH RangeeOS 8.0.4 modules store credentials in plaintext including credentials of users for several external facing administrative services, domain joined users,…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-16279

Published Aug 20, 2020

The Kommbox component in Rangee GmbH RangeeOS 8.0.4 is vulnerable to Remote Code Execution due to untrusted user supplied input being passed to the command line without sanitizati…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1