Pos Dienstleistung Entwicklung Vertrieb Gmbh Cashit! Serving Solutions vulnerabilities
3 known vulnerabilities affecting pos/dienstleistung_entwicklung_vertrieb_gmbh_cashit!_serving_solutions.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH1
Vulnerabilities
Page 1 of 1
CVE-2023-3656P2CRITICALCVSS 9.8≤ 03.A06rks2023-10-03
CVE-2023-3656 [CRITICAL] CWE-94 CVE-2023-3656: cashIT! - serving solutions. Devices from "PoS/ Dienstleistung, Entwicklung & Vertrieb GmbH" to 03.A
cashIT! - serving solutions. Devices from "PoS/ Dienstleistung, Entwicklung & Vertrieb GmbH" to 03.A06rks 2023.02.37 are affected by an unauthenticated remote code execution vulnerability. This vulnerability can be triggered by an HTTP endpoint exposed to the network.
nvd
CVE-2023-3654P3CRITICALCVSS 9.8≤ 03.A06rks 2023.02.372023-10-03
CVE-2023-3654 [CRITICAL] CWE-346 CVE-2023-3654: cashIT! - serving solutions. Devices from "PoS/ Dienstleistung, Entwicklung & Vertrieb GmbH" to 03.A
cashIT! - serving solutions. Devices from "PoS/ Dienstleistung, Entwicklung & Vertrieb GmbH" to 03.A06rks 2023.02.37 are affected by a origin bypass via the host header in an HTTP request. This vulnerability can be triggered by an HTTP endpoint exposed to the network.
nvd
CVE-2023-3655P3HIGHCVSS 7.5≤ 03.A06rks 2023.02.372023-10-03
CVE-2023-3655 [HIGH] CWE-749 CVE-2023-3655: cashIT! - serving solutions. Devices from "PoS/ Dienstleistung, Entwicklung & Vertrieb GmbH" to 03.A
cashIT! - serving solutions. Devices from "PoS/ Dienstleistung, Entwicklung & Vertrieb GmbH" to 03.A06rks 2023.02.37 are affected by a dangerous methods, that allows to leak the database (system settings, user accounts,...). This vulnerability can be triggered by an HTTP endpoint exposed to the network.
nvd