dixell_xweb-500_firmware vulnerabilities
CVEs whose affected-version data names the dixell_xweb-500_firmware package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2021-45421High· 7.5Emerson Dixell XWEB-500 products are affected by information disclosure via directory listing
Emerson Dixell XWEB-500 products are affected by information disclosure via directory listing. A potential attacker can use this misconfiguration to access all the files in the remote directories. Note: the product has not been supported…
▾ Twilightemerson · dixell_xweb-500_firmwareEPSS 1.3%via NVD
CVE-2021-45420Critical· 9.8PoCEmerson Dixell XWEB-500 products are affected by arbitrary file write vulnerability in /cgi-bin/logo_extra_upload.cgi, /cgi-bin/cal_save.cgi, and /cgi-bin/lo_utils.cgi
Emerson Dixell XWEB-500 products are affected by arbitrary file write vulnerability in /cgi-bin/logo_extra_upload.cgi, /cgi-bin/cal_save.cgi, and /cgi-bin/lo_utils.cgi. An attacker will be able to write any file on the target system with…
▾ Abyssalemerson · dixell_xweb-500_firmwareEPSS 18%via NVD