Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Lancom-systems Subscribe
Filtered by product Lcos
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-23055 1 Lancom-systems 3 Lcos, Wlc-1000, Wlc-4006 2021-10-28 3.5 LOW 5.4 MEDIUM
ANCOM WLAN Controller (Wireless Series & Hotspot) WLC-1000 & WLC-4006 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the /authen/start/ module via the userid and password parameters.
CVE-2021-33903 1 Lancom-systems 1 Lcos 2021-10-15 8.5 HIGH 8.8 HIGH
In LCOS 10.40 to 10.42.0473-RU3 with SNMPv3 enabled on LANCOM devices, changing the password of the root user via the CLI does not change the password of the root user for SNMPv3 access. (However, changing the password of the root user via LANconfig does change the password of the root user for SNMPv3 access.)