📦 R Seenet

by Advantech

🔍 What is R Seenet?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-5642

CRITICAL CVSS 9.8 Oct 18, 2023

This vulnerability allows unauthenticated remote attackers to read and write to the snmpmon.ini configuration file in Advantech R-SeeNet software. Attackers can access sensitive information or modify ...

CVE-2021-21805

CRITICAL CVSS 9.8 Aug 5, 2021

This CVE describes a critical OS command injection vulnerability in Advantech R-SeeNet's ping.php script that allows unauthenticated attackers to execute arbitrary operating system commands on affecte...

CVE-2021-21804

CRITICAL CVSS 9.8 Jul 16, 2021

This CVE describes a local file inclusion vulnerability in Advantech R-SeeNet's options.php script that allows attackers to execute arbitrary PHP code via crafted HTTP requests. Organizations using Ad...

CVE-2023-3256

HIGH CVSS 8.8 Jun 22, 2023

CVE-2023-3256 is a local file inclusion vulnerability in Advantech R-SeeNet versions 2.4.22 that allows low-privileged users to access and load local files. This affects organizations using Advantech ...

CVE-2021-21911

HIGH CVSS 7.8 Dec 22, 2021

This vulnerability allows local attackers to escalate privileges to SYSTEM authority on Windows systems running Advantech R-SeeNet 2.4.15 by replacing system files with malicious ones. It affects orga...

CVE-2021-21915

HIGH CVSS 8.8 Dec 22, 2021

An authenticated SQL injection vulnerability exists in Advantech R-SeeNet's group_list page via the company_filter parameter. This allows attackers to execute arbitrary SQL commands, potentially compr...

CVE-2021-21917

HIGH CVSS 8.8 Dec 22, 2021

An authenticated SQL injection vulnerability exists in Advantech R-SeeNet's group_list page, allowing attackers to execute arbitrary SQL commands. This affects R-SeeNet 2.4.15 installations as of July...

CVE-2021-21936

HIGH CVSS 8.8 Dec 22, 2021

This SQL injection vulnerability allows authenticated users or attackers via CSRF to execute arbitrary SQL commands through the 'health_alt_filter' parameter. Successful exploitation could lead to dat...