Known vulnerabilities in Ozeki NG SMS Gateway

Vendor: Ozeki Ltd.
Software CPE: cpe:2.3:a:ozeki:ozeki_ng_sms_gateway:*:*:*:*:*:*:*:*
Total vulnerabilities: 10
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 0

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Ozeki NG SMS Gateway Ozeki NG SMS Gateway is affected by 10 known vulnerabilities: 4 high, 4 medium, 2 low Critical High Medium Low

Vulnerabilities (10)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU47077 - Unrestricted Upload of File with Dangerous Type
CVE-2020-14022
CWE-434 High
No
No
4.18.0 22.09.2020 SB2020092410
#VU47080 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2020-14031
CWE-22 High
No
No
4.18.0 22.09.2020 SB2020092410
#VU47081 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2020-14028
CWE-22 High
No
No
4.18.0 22.09.2020 SB2020092410
#VU47082 - Improper input validation
CVE-2020-14027
CWE-20 High
No
No
4.18.0 22.09.2020 SB2020092410
#VU47083 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-14026
CWE-94 Low
No
No
4.18.0 22.09.2020 SB2020092410
#VU47084 - Cross-Site Request Forgery (CSRF)
CVE-2020-14025
CWE-352 Medium
No
No
4.18.0 22.09.2020 SB2020092410
#VU47085 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-14024
CWE-79 Low
No
No
4.18.0 22.09.2020 SB2020092410
#VU47086 - Server-Side Request Forgery (SSRF)
CVE-2020-14023
CWE-918 Medium
No
No
4.18.0 22.09.2020 SB2020092410
#VU47078 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2020-14029
CWE-611 Medium
No
No
4.18.0 18.09.2020 SB2020092410
#VU47079 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2020-14021
CWE-22 Medium
No
No
4.18.0 18.09.2020 SB2020092410