Known Vulnerabilities for products from Tabit Technologies
Listed below are 7 of the newest known vulnerabilities associated with the vendor "Tabit Technologies".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-34776 json | Tabit - giftcard stealth. Several APIs on the web system display, without authorization, sensitive information such as health... | 7.5 - HIGH | 2022-08-22 | 2023-03-28 |
| CVE-2022-34775 json | Tabit - Excessive data exposure. Another endpoint mapped by the tiny url, was one for reservation cancellation, containing th... | 7.5 - HIGH | 2022-08-22 | 2023-08-08 |
| CVE-2022-34774 json | Tabit - Arbitrary account modification. One of the endpoints mapped by the tiny URL, was a page where an adversary can modify... | 5.3 - MEDIUM | 2022-08-22 | 2023-03-28 |
| CVE-2022-34773 json | Tabit - HTTP Method manipulation. https://bridge.tabit.cloud/configuration/addresses-query - can be POST-ed to add addresses ... | 9.8 - CRITICAL | 2022-08-22 | 2023-03-28 |
| CVE-2022-34772 json | Tabit - password enumeration. Description: Tabit - password enumeration. The passwords for the Tabit system is a 4 digit OTP.... | 8.8 - HIGH | 2022-08-22 | 2023-03-28 |
| CVE-2022-34771 json | Tabit - arbitrary SMS send on Tabits behalf. The resend OTP API of tabit allows an adversary to send messages on tabits behal... | 3.5 - LOW | 2022-08-22 | 2023-03-28 |
| CVE-2022-34770 json | Tabit - sensitive information disclosure. Several APIs on the web system display, without authorization, sensitive informatio... | 7.5 - HIGH | 2022-08-22 | 2023-08-08 |