Known Vulnerabilities for Dlx Spot Player4 by Tecnovision
Listed below are 3 of the newest known vulnerabilities associated with "Dlx Spot Player4" by "Tecnovision".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2017-12930 json | SQL Injection in the admin interface in TecnoVISION DLX Spot Player4 version >1.5.10 allows remote unauthenticated users to a... | 9.8 - CRITICAL | 2017-09-21 | 2017-09-29 |
| CVE-2017-12929 json | Arbitrary File Upload in resource.php of TecnoVISION DLX Spot Player4 version >1.5.10 allows remote authenticated users to up... | 8.8 - HIGH | 2017-09-21 | 2017-09-29 |
| CVE-2017-12928 json | A hard-coded password of tecn0visi0n for the dlxuser account in TecnoVISION DLX Spot Player4 (all known versions) allows remo... | 9.8 - CRITICAL | 2017-09-21 | 2017-09-29 |