Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

David Blagojevic

Researcher fromCyberDanube
#13389of 53,633
19.8Total CVSS
Vulnerabilities · 2
Critical
2
PT-2024-39295
9.8
2024-09-19
Riello · Riello Netman 204 · CVE-2024-8877
Name of the Vulnerable Software and Affected Versions: Riello Netman 204 versions through 4.05 Description: The issue is related to improper neutralization of special elements, resulting in a SQL Injection vulnerability. This vulnerability is limited to the SQLite database of measurement data. Recommendations: For versions through 4.05, patch the system immediately and review logs for signs of compromise. Prioritize patching on all affected systems. As a temporary workaround, consider restricting access to the SQLite database of measurement data until a patch is available.
PT-2024-39296
10
2024-09-19
Riello · Riello Netman 204 · CVE-2024-8878
Name of the Vulnerable Software and Affected Versions: Riello Netman 204 versions through 4.05 Description: The password recovery mechanism for the forgotten password in Riello Netman 204 allows an attacker to reset the admin password and take over control of the device. Recommendations: For versions through 4.05, update the software to a version that fixes this issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.