Known Vulnerabilities for Smart Asset by Damstratechnology
Listed below are 3 of the newest known vulnerabilities associated with "Smart Asset" by "Damstratechnology".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-26527 json | An issue was discovered in API/api/Version in Damstra Smart Asset 2020.7. Cross-origin resource sharing trusts random origins... | 9.8 - CRITICAL | 2020-10-02 | 2020-10-14 |
| CVE-2020-26526 json | An issue was discovered in Damstra Smart Asset 2020.7. It is possible to enumerate valid usernames on the login page. The app... | 5.3 - MEDIUM | 2020-10-02 | 2020-10-06 |
| CVE-2020-26525 json | Damstra Smart Asset 2020.7 has SQL injection via the API/api/Asset originator parameter. This allows forcing the database and... | 9.1 - CRITICAL | 2020-10-02 | 2020-10-06 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Damstratechnology | Smart Asset | 2020.7 |