Known Vulnerabilities for products from Identicard

Listed below are 5 of the newest known vulnerabilities associated with the vendor "Identicard".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2019-3909 json Premisys Identicard version 3.1.190 database uses default credentials. Users are unable to change the credentials without ven... 9.8 - CRITICAL 2019-01-18 2020-08-24
CVE-2019-3908 json Premisys Identicard version 3.1.190 stores backup files as encrypted zip files. The password to the zip is hard-coded and unc... 7.5 - HIGH 2019-01-18 2022-12-03
CVE-2019-3907 json Premisys Identicard version 3.1.190 stores user credentials and other sensitive information with a known weak encryption meth... 7.5 - HIGH 2019-01-18 2021-11-02
CVE-2019-3906 json Premisys Identicard version 3.1.190 contains hardcoded credentials in the WCF service on port 9003. An authenticated remote a... 8.8 - HIGH 2019-01-18 2022-12-03
CVE-2017-14973 json IDenticard Two-Reader Controller Configuration Manager 1.18.8 (396) is vulnerable to Stored Cross-Site Scripting (XSS) via th... 5.4 - MEDIUM 2017-10-09 2017-10-27

Known software with vulnerabilities from Identicard

Type Vendor Product Version
ApplicationIdenticardPremisys Id3.1.190