Vulnerabilities
Vulnerable Software
Resourcexpress:  Security Vulnerabilities
In QED ResourceXpress through 4.9k, a large numeric or alphanumeric value submitted in specific URL parameters causes a server error in script execution due to insufficient input validation.
CVSS Score
5.3
EPSS Score
0.008
Published
2021-04-15
QED ResourceXpress Qubi3 devices before 1.40.9 could allow a local attacker (with physical access to the device) to obtain sensitive information via the debug interface (keystrokes over a USB cable), aka wireless password visibility.
CVSS Score
4.6
EPSS Score
0.0
Published
2020-11-17
SQL Injection issues in various ASPX pages of ResourceXpress Meeting Monitor 4.9 could lead to remote code execution and information disclosure.
CVSS Score
9.8
EPSS Score
0.022
Published
2020-11-12


Contact Us

Shodan ® - All rights reserved