Filtered by vendor Kiloview Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-9265 1 Kiloview 1 Ndi N30 2025-10-21 N/A
A broken authorization vulnerability in Kiloview NDI N30 allows a remote unauthenticated attacker to deactivate user verification, giving them access to state changing actions that should only be initiated by administratorsThis issue affects Kiloview NDI N30 and was fixed in Firmware version later than 2.02.0246
CVE-2025-8915 1 Kiloview 1 N30 2025-10-21 N/A
Hardcoded TLS private key and certificate in firmware in Kiloview N30 2.02.246 allows malicious adversary to do a Mann-in-the-middle attack via the network
CVE-2023-41922 1 Kiloview 4 P1, P1 Firmware, P2 and 1 more 2024-11-21 7.2 High
A 'Cross-site Scripting' (XSS) vulnerability, characterized by improper input neutralization during web page generation, has been discovered. This vulnerability allows for Stored XSS attacks to occur. Multiple areas within the administration interface of the webserver lack adequate input validation, resulting in multiple instances of Stored XSS vulnerabilities.
CVE-2023-41919 1 Kiloview 4 P1, P1 Firmware, P2 and 1 more 2024-11-21 9.8 Critical
Hardcoded credentials are discovered within the application's source code, creating a potential security risk for unauthorized access.