Known Vulnerabilities for Remote Kiln Control by Blaauwproducts
Listed below are 9 of the newest known vulnerabilities associated with "Remote Kiln Control" by "Blaauwproducts".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2019-18872 json | Weak password requirements in Blaauw Remote Kiln Control through v3.00r4 allow a user to set short or guessable passwords (e.... | 7.5 - HIGH | 2020-05-07 | 2020-05-12 |
| CVE-2019-18871 json | A path traversal in debug.php accessed via default.php in Blaauw Remote Kiln Control through v3.00r4 allows an authenticated ... | 8.8 - HIGH | 2020-05-07 | 2020-05-12 |
| CVE-2019-18870 json | A path traversal via the iniFile parameter in excel.php in Blaauw Remote Kiln Control through v3.00r4 allows an authenticated... | 6.5 - MEDIUM | 2020-05-07 | 2020-05-12 |
| CVE-2019-18869 json | Leftover Debug Code in Blaauw Remote Kiln Control through v3.00r4 allows a user to execute arbitrary php code via /default.ph... | 9.8 - CRITICAL | 2020-05-07 | 2020-05-12 |
| CVE-2019-18868 json | Blaauw Remote Kiln Control through v3.00r4 allows an unauthenticated attacker to access MySQL credentials in cleartext in /en... | 9.8 - CRITICAL | 2020-05-07 | 2021-07-21 |
| CVE-2019-18867 json | Browsable directories in Blaauw Remote Kiln Control through v3.00r4 allow an attacker to enumerate sensitive filenames and lo... | 7.5 - HIGH | 2020-05-07 | 2020-05-12 |
| CVE-2019-18866 json | Unauthenticated SQL injection via the username in the login mechanism in Blaauw Remote Kiln Control through v3.00r4 allows a ... | 7.5 - HIGH | 2020-05-07 | 2020-05-15 |
| CVE-2019-18865 json | Information disclosure via error message discrepancies in authentication functions in Blaauw Remote Kiln Control through v3.0... | 5.3 - MEDIUM | 2020-05-07 | 2021-07-21 |
| CVE-2019-18864 json | /server-info and /server-status in Blaauw Remote Kiln Control through v3.00r4 allow an unauthenticated attacker to gain sensi... | 7.5 - HIGH | 2020-05-07 | 2021-07-21 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Blaauwproducts | Remote Kiln Control | 3.0.0 | |||
| Application | Blaauwproducts | Remote Kiln Control | 3.0.0 |