Known Vulnerabilities for products from Gogogate
Listed below are 11 of the newest known vulnerabilities associated with the vendor "Gogogate".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-13119 json | ismartgate PRO 1.5.9 is vulnerable to clickjacking. | 8.1 - HIGH | 2020-09-24 | 2020-09-27 |
| CVE-2020-12843 json | ismartgate PRO 1.5.9 is vulnerable to malicious file uploads via the form for uploading sounds to garage doors. The magic byt... | 9.8 - CRITICAL | 2020-09-24 | 2020-09-27 |
| CVE-2020-12842 json | ismartgate PRO 1.5.9 is vulnerable to privilege escalation by appending PHP code to /cron/checkUserExpirationDate.php. | 9.8 - CRITICAL | 2020-09-24 | 2021-07-21 |
| CVE-2020-12841 json | ismartgate PRO 1.5.9 is vulnerable to CSRF that allows remote attackers to upload imae files via /index.php | 6.5 - MEDIUM | 2020-09-24 | 2020-09-27 |
| CVE-2020-12840 json | ismartgate PRO 1.5.9 is vulnerable to CSRF that allows remote attackers to upload sound files via /index.php | 6.5 - MEDIUM | 2020-09-24 | 2020-09-27 |
| CVE-2020-12839 json | ismartgate PRO 1.5.9 is vulnerable to privilege escalation by appending PHP code to /cron/checkExpirationDate.php. | 9.8 - CRITICAL | 2020-09-24 | 2021-07-21 |
| CVE-2020-12838 json | ismartgate PRO 1.5.9 is vulnerable to privilege escalation by appending PHP code to /cron/mailAdmin.php. | 9.8 - CRITICAL | 2020-09-24 | 2021-07-21 |
| CVE-2020-12837 json | ismartgate PRO 1.5.9 is vulnerable to malicious file uploads via the form for uploading images to garage doors. The magic byt... | 7.5 - HIGH | 2020-09-24 | 2020-09-27 |
| CVE-2020-12282 json | iSmartgate PRO 1.5.9 is vulnerable to CSRF via the busca parameter in the form used for searching for users, accessible via /... | 8.8 - HIGH | 2020-09-24 | 2020-09-27 |
| CVE-2020-12281 json | iSmartgate PRO 1.5.9 is vulnerable to CSRF that allows remote attackers to create a new user via /index.php. | 6.5 - MEDIUM | 2020-09-24 | 2020-09-27 |
| CVE-2020-12280 json | iSmartgate PRO 1.5.9 is vulnerable to CSRF that allows remote attackers to open/close a specified garage door/gate via /isg/o... | 6.5 - MEDIUM | 2020-09-24 | 2020-09-27 |