streamax_crocus vulnerabilities
CVEs whose affected-version data names the streamax_crocus package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
7 CVEsRSS
CVE-2025-11914Medium· 4.3A vulnerability was found in Shenzhen Ruiming Technology Streamax Crocus 1.3.40
A vulnerability was found in Shenzhen Ruiming Technology Streamax Crocus 1.3.40. Affected by this issue is the function Download of the file /DeviceFileReport.do?Action=Download. Performing manipulation of the argument FilePath results i…
CVE-2025-11913Medium· 4.3A vulnerability has been found in Shenzhen Ruiming Technology Streamax Crocus 1.3.40
A vulnerability has been found in Shenzhen Ruiming Technology Streamax Crocus 1.3.40. Affected by this vulnerability is the function Download of the file /Service.do?Action=Download. Such manipulation of the argument Path leads to path t…
CVE-2025-11912Medium· 6.3A flaw has been found in Shenzhen Ruiming Technology Streamax Crocus 1.3.40
A flaw has been found in Shenzhen Ruiming Technology Streamax Crocus 1.3.40. Affected is the function Query of the file /DeviceState.do?Action=Query. This manipulation of the argument orderField causes sql injection. The attack can be in…
CVE-2025-11911Medium· 6.3A vulnerability was detected in Shenzhen Ruiming Technology Streamax Crocus 1.3.40
A vulnerability was detected in Shenzhen Ruiming Technology Streamax Crocus 1.3.40. This impacts the function Query of the file /DeviceFault.do?Action=Query. The manipulation of the argument sortField results in sql injection. It is poss…
CVE-2025-11910Medium· 6.3A security vulnerability has been detected in Shenzhen Ruiming Technology Streamax Crocus 1.3.40
A security vulnerability has been detected in Shenzhen Ruiming Technology Streamax Crocus 1.3.40. This affects the function Query of the file /MemoryState.do?Action=Query. The manipulation of the argument orderField leads to sql injectio…
CVE-2025-11909Medium· 6.3A weakness has been identified in Shenzhen Ruiming Technology Streamax Crocus 1.3.40
A weakness has been identified in Shenzhen Ruiming Technology Streamax Crocus 1.3.40. The impacted element is the function queryLast of the file /RepairRecord.do?Action=QueryLast. Executing manipulation of the argument orderField can lea…
CVE-2025-11908Medium· 6.3A security flaw has been discovered in Shenzhen Ruiming Technology Streamax Crocus 1.3.40
A security flaw has been discovered in Shenzhen Ruiming Technology Streamax Crocus 1.3.40. The affected element is the function uploadFile of the file /FileDir.do?Action=Upload. Performing manipulation of the argument File results in unr…