Product
loftware spectrum
12 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-37234
CVE-2023-37233
CVE-2023-37232
CVE-2023-37231
CVE-2023-37230
CVE-2023-37229
CVE-2023-37227
CVE-2023-37226
CVE-2018-6589
CVE-2017-9522
CVE-2015-2828
CVE-2015-2827
<= 4.6
Loftware Spectrum through 4.6 has unprotected JMX Registry.
< 4.6_hf14
Loftware Spectrum before 4.6 HF14 allows authenticated XXE attacks.
<= 4.6
Loftware Spectrum through 4.6 exposes Sensitive Information (Logs) to an Unauthorized Actor.
< 4.6
Loftware Spectrum before 4.6 HF14 uses a Hard-coded Password.
< 5.1
Loftware Spectrum (testDeviceConnection) before 5.1 allows SSRF.
< 5.1
Loftware Spectrum before 5.1 allows SSRF.
< 4.6
Loftware Spectrum before 4.6 HF13 Deserializes Untrusted Data.
< 4.6
Loftware Spectrum before 4.6 HF14 has Missing Authentication for a Critical Function.
>= 10.1 and < 10.01.02.ptf_10.1.239
CA Spectrum 10.1 prior to 10.01.02.PTF_10.1.239 and 10.2.x prior to 10.2.3 allows remote attackers to cause a denial of service vi
all versions
The Time Warner firmware on Technicolor TC8717T devices sets the default Wi-Fi passphrase to a combination of the SSID and BSSID,
all versions
CA Spectrum 9.2.x and 9.3.x before 9.3 H02 does not properly validate serialized Java objects, which allows remote authenticated u
all versions
Cross-site scripting (XSS) vulnerability in CA Spectrum 9.2.x and 9.3.x before 9.3 H02 allows remote authenticated users to inject