Vulnerabilidades em Copeland LP
10 resultadosAnálise Vexday
Copeland LP registra 10 vulnerabilidades catalogadas, com 3 em nível crítico, mas nenhuma sob exploração ativa conhecida no momento. A fraqueza dominante identificada é CWE-522 (armazenamento inadequado de credenciais), sugerindo risco de vazamento de credenciais em produtos da empresa. Não há publicações recentes (últimos 90 dias), indicando que o risco atual é estável e não representa uma ameaça emergente imediata.
CVE-2025-6519CRITICALConsistent predictable generation of the password for the default admin user "ONEDAY" to the application servicesEPSS 0.5%CVE-2025-52549CRITICALPredictable root linux password generationEPSS 0.5%CVE-2025-52544HIGHArbitrary read file from the filesystemEPSS 0.4%CVE-2025-52551CRITICALProprietary protocol allows for unauthenticated file operationsEPSS 0.3%CVE-2025-52548MEDIUMEnabling SSH and Shellinabox on the vulnerable machineEPSS 0.3%CVE-2025-52547HIGHDoS to the application servicesEPSS 0.3%CVE-2025-52543MEDIUMLogin to the application services using only the password hashEPSS 0.3%CVE-2025-52545HIGHPrivilege escalation in the application servicesEPSS 0.3%CVE-2025-52550HIGHFirmware upgrade packages are unsignedEPSS 0.2%CVE-2025-52546MEDIUMStored XSS by uploading a specially crafted floor plan fileEPSS 0.2%