Rainmachine Web Application
Rainmachine · 3 CVEs
CVE-2018-6909
MEDIUM
A missing X-Frame-Options header in the Green Electronics RainMachine Mini-8 (2nd Generation) and Touch HD 12 web appli…
Nov 1, 2018
CVE-2018-6907
HIGH
A Cross Site Request Forgery (CSRF) vulnerability in the Green Electronics RainMachine Mini-8 (2nd Generation) and Touc…
Nov 1, 2018
CVE-2018-6906
MEDIUM
A persistent Cross Site Scripting (XSS) vulnerability in the Green Electronics RainMachine Mini-8 (2nd Generation) and…
Nov 1, 2018
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2018-6909 | A missing X-Frame-Options header in the Green Electronics RainMachine Mini-8 (2nd Generation) and Touch HD 12 web application could be used by a remote attacke… | MEDIUM | 1.06% | Nov 1, 2018 |
| CVE-2018-6907 | A Cross Site Request Forgery (CSRF) vulnerability in the Green Electronics RainMachine Mini-8 (2nd Generation) and Touch HD 12 web application allows an attack… | HIGH | 0.49% | Nov 1, 2018 |
| CVE-2018-6906 | A persistent Cross Site Scripting (XSS) vulnerability in the Green Electronics RainMachine Mini-8 (2nd Generation) and Touch HD 12 web application allows an at… | MEDIUM | 0.68% | Nov 1, 2018 |
Showing 1 to 3 of 3 CVEs