Vulnerabilities (CVE)

Filtered by vendor Demarc Security Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2003-0340 1 Demarc Security 1 Puresecure 2023-12-10 7.5 HIGH N/A
Demarc Puresecure 1.6 stores authentication information for the logging server in plaintext, which allows attackers to steal login names and passwords to gain privileges.
CVE-2002-0539 1 Demarc Security 1 Puresecure 2023-12-10 10.0 HIGH N/A
Demarc PureSecure 1.05 allows remote attackers to gain administrative privileges via a SQL injection attack in a session ID that is stored in the s_key cookie.