Vulnerabilities
7 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2024-1301 | SQL injection vulnerability in Badger Meter Monitool affecting versions 4.6.3 and earlier. SQL injection vulnerability in Badger Meter Monitool affecting versions 4.6.3 and earlier. A remote attacker could send a specially crafted SQL query to the server via the j_username parameter and retrieve the information stored in the database. NVD description · AI analysis pending | 7.5 group max | 2% |
| — | ||
| CVE-2020-12507 +1 in the same advisory: …12508 | In s::can moni::tools before version 4.2 an authenticated attacker could get full access to the database through SQL injection. In s::can moni::tools before version 4.2 an authenticated attacker could get full access to the database through SQL injection. This may result in loss of confidentiality, loss of integrity and DoS. NVD description · AI analysis pending | 8.8 group max | <1% |
| — | ||
| CVE-2020-12509 | In s::can moni::tools in versions below 4.2 an unauthenticated attacker could get any file from the device by path traversal in the camera-file module. In s::can moni::tools in versions below 4.2 an unauthenticated attacker could get any file from the device by path traversal in the camera-file module. NVD description · AI analysis pending | 7.5 | <1% |
| — |