Known Vulnerabilities for products from Generex

Listed below are 10 of the newest known vulnerabilities associated with the vendor "Generex".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Generex can be found at device.report : Generex

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2022-47192 json Generex UPS CS141 below 2.06 version, could allow a remote attacker to upload a backup file containing a modified "users.json... 8.8 - HIGH 2023-03-31 2023-04-06
CVE-2022-47191 json Generex UPS CS141 below 2.06 version, could allow a remote attacker to upload a firmware file containing a file with modified... 8.8 - HIGH 2023-03-31 2023-04-06
CVE-2022-47190 json Generex UPS CS141 below 2.06 version, could allow a remote attacker to upload a firmware file containing a webshell that coul... 9.8 - CRITICAL 2023-03-31 2023-04-06
CVE-2022-47189 json Generex UPS CS141 below 2.06 version, allows an attacker toupload a firmware file containing an incorrect configuration, in o... 9.1 - CRITICAL 2023-03-31 2023-04-06
CVE-2022-47188 json There is an arbitrary file reading vulnerability in Generex UPS CS141 below 2.06 version. An attacker, making use of the defa... 7.5 - HIGH 2023-03-31 2023-04-06
CVE-2022-47187 json There is a file upload XSS vulnerability in Generex CS141 below 2.06 version. The web application allows file uploading, maki... 6.1 - MEDIUM 2023-09-28 2023-10-02
CVE-2022-47186 json There is an unrestricted upload of file vulnerability in Generex CS141 below 2.06 version. An attacker could upload and/or de... 9.1 - CRITICAL 2023-09-28 2023-10-03
CVE-2022-42457 json Generex CS141 through 2.10 allows remote command execution by administrators via a web interface that reaches run_update in /... 7.2 - HIGH 2022-10-06 2022-11-10
CVE-2022-26041 json Directory traversal vulnerability in RCCMD 4.26 and earlier allows a remote authenticated attacker with an administrative pri... 6.5 - MEDIUM 2022-06-13 2022-06-17
CVE-2020-11420 json UPS Adapter CS141 before 1.90 allows Directory Traversal. An attacker with Admin or Engineer login credentials could exploit ... 6.5 - MEDIUM 2020-04-27 2021-09-14

Known software with vulnerabilities from Generex

Type Vendor Product Version
HardwareGenerexCs141-
Operating
System
GenerexCs141 Firmware-