VendorsContecsolarview_compactall versions
Vulnerabilities

Contec SolarView Compact

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2023-23333
There is a command injection vulnerability in SolarView Compact through 6.00, attackers can execute commands by bypassing internal restrictions through downloader.php.
Published 2023-02-06 · Modified
9.81 PoCEPSS 0.993
CVE-2023-29919
SolarView Compact <= 6.0 is vulnerable to Insecure Permissions. Any file on the server can be read or modified because texteditor.php is not restricted.
Published 2023-05-23 · Modified
9.8EPSS 0.602
CVE-2022-40881
SolarView Compact 6.00 was discovered to contain a command injection vulnerability via network_test.php
Published 2022-11-17 · Modified
9.8EPSS 0.301
CVE-2022-44354
SolarView Compact 4.0 and 5.0 is vulnerable to Unrestricted File Upload via a crafted php file.
Published 2022-11-29 · Modified
9.8EPSS 0.015
CVE-2023-46509
An issue in Contec SolarView Compact v.6.0 and before allows an attacker to execute arbitrary code via the texteditor.php component.
Published 2023-10-27 · Modified
9.8EPSS 0.008
CVE-2023-40924
SolarView Compact < 6.00 is vulnerable to Directory Traversal.
Published 2023-09-08 · Modified
7.5EPSS 0.032
CVE-2022-44355
SolarView Compact 7.0 is vulnerable to Cross-site Scripting (XSS) via /network_test.php.
Published 2022-11-29 · Modified
6.1EPSS 0.017