Home/Product/elspec ltd g5dfr firmware
Product

elspec ltd g5dfr firmware

13 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-59392
< 1.2.3.13
On Elspec G5 devices through 1.2.2.19, a person with physical access to the device can reset the Admin password by inserting a USB
6.8MEDIUM
CVE-2024-46603
< 1.2.2.19
An XML External Entity (XXE) vulnerability in Elspec Engineering G5 Digital Fault Recorder Firmware v1.2.1.12 allows attackers to
7.5HIGH
CVE-2024-46602
< 1.2.2.19
An issue was discovered in Elspec G5 digital fault recorder version 1.2.1.12 and earlier. An XML External Entity (XXE) vulnerabili
7.5HIGH
CVE-2024-46601
< 1.2.2.19
Elspec Engineering G5 Digital Fault Recorder Firmware v1.2.1.12 was discovered to contain a buffer overflow.
7.5HIGH
CVE-2024-22085
< 1.2.1.12
An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. The shadow file is world readable.
6.2MEDIUM
CVE-2024-22084
< 1.2.1.12
An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Cleartext passwords and hashes are expos
7.5HIGH
CVE-2024-22083
< 1.2.1.12
An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. A hardcoded backdoor session ID exists t
6.5MEDIUM
CVE-2024-22082
< 1.2.1.12
An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Unauthenticated directory listing can oc
7.5HIGH
CVE-2024-22081
< 1.2.1.12
An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Unauthenticated memory corruption can oc
9.8CRITICAL
CVE-2024-22080
< 1.2.1.12
An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Unauthenticated memory corruption can oc
9.8CRITICAL
CVE-2024-22079
< 1.2.1.12
An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Directory traversal can occur via the sy
7.5HIGH
CVE-2024-22078
< 1.2.1.12
An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Privilege escalation can occur via world
8.8HIGH
CVE-2024-22077
< 1.2.1.12
An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. The SQLite database file has weak permis
5.3MEDIUM
threatengine.sh