CVE-2023-6102 – Maiwei Safety Production Control Platform unrestricted upload
https://notcve.org/view.php?id=CVE-2023-6102
A vulnerability, which was classified as problematic, was found in Maiwei Safety Production Control Platform 4.1. Affected is an unknown function of the file /Content/Plugins/uploader/FileChoose.html?fileUrl=/Upload/File/Pics/&parent. The manipulation leads to unrestricted upload. It is possible to launch the attack remotely. • https://vuldb.com/?ctiid.245064 https://vuldb.com/?id.245064 • CWE-434: Unrestricted Upload of File with Dangerous Type •
CVE-2023-6101 – Maiwei Safety Production Control Platform Intelligent Monitoring ha.html information disclosure
https://notcve.org/view.php?id=CVE-2023-6101
A vulnerability, which was classified as problematic, has been found in Maiwei Safety Production Control Platform 4.1. This issue affects some unknown processing of the file /TC/V2.7/ha.html of the component Intelligent Monitoring. The manipulation leads to information disclosure. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. • https://vuldb.com/?ctiid.245063 https://vuldb.com/?id.245063 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2023-6100 – Maiwei Safety Production Control Platform GetItemList information disclosure
https://notcve.org/view.php?id=CVE-2023-6100
A vulnerability classified as problematic was found in Maiwei Safety Production Control Platform 4.1. This vulnerability affects unknown code of the file /api/DataDictionary/GetItemList. The manipulation leads to information disclosure. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. • https://vuldb.com/?ctiid.245062 https://vuldb.com/?id.245062 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •