Known vulnerabilities in iView - page 2

Software: iView
Software CPE: cpe:2.3:a:advantech:iview:*:*:*:*:*:*:*:*
Total vulnerabilities: 32
Public exploits: 2
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting iView iView is affected by 32 known vulnerabilities: 13 high, 15 medium, 4 low Critical High Medium Low

Vulnerabilities (32)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU53815 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2021-32932
CWE-89 High
No
No
5.7.03.6182 04.06.2021 SB2021060407
#VU50580 - Missing Authentication for Critical Function
CVE-2021-22652
CWE-306 High
Available
No
5.7.03.6112 10.02.2021 SB2021021008
#VU50575 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-22656
CWE-22 Medium
No
No
5.7.03.6112 10.02.2021 SB2021021008
#VU50574 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2021-22658
CWE-89 Medium
No
No
5.7.03.6112 10.02.2021 SB2021021008
#VU50573 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2021-22654
CWE-89 Medium
No
No
5.7.03.6112 10.02.2021 SB2021021008
#VU46067 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2020-16245
CWE-22 High
No
No
5.7.02 26.08.2020 SB2020082602
#VU29943 - Improper Access Control
CVE-2020-14499
CWE-284 Medium
No
No
5.7 15.07.2020 SB2020071531
#VU29942 - Missing Authentication for Critical Function
CVE-2020-14501
CWE-306 High
No
No
5.7 15.07.2020 SB2020071531
#VU29941 - Improper input validation
CVE-2020-14503
CWE-20 High
No
No
5.7 15.07.2020 SB2020071531
#VU29940 - Command injection
CVE-2020-14505
CWE-77 High
No
No
5.7 15.07.2020 SB2020071531
#VU29939 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2020-14507
CWE-22 High
No
No
5.7 15.07.2020 SB2020071531
#VU29938 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-14497
CWE-89 High
No
No
5.7 15.07.2020 SB2020071531


Showing elements 21 - 40 out of 32