Known Vulnerabilities for Roomwizard Firmware by Steelcase
Listed below are 3 of the newest known vulnerabilities associated with "Roomwizard Firmware" by "Steelcase".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2018-7057 json | RoomWizard before 4.4.x allows XSS via the HelpAction.action pageName parameter. | 6.1 - MEDIUM | 2018-02-15 | 2018-03-12 |
| CVE-2018-7056 json | RoomWizard before 4.4.x allows remote attackers to obtain potentially sensitive information about IP addresses via /getGroupT... | 5.3 - MEDIUM | 2018-02-15 | 2018-03-12 |
| CVE-2018-7055 json | GroupViewProxyServlet in RoomWizard before 4.4.x allows SSRF via the url parameter. | 7.5 - HIGH | 2018-02-15 | 2018-03-12 |