Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Hidglobal

111 known vulnerabilities

4
CRITICAL
8
HIGH
4
MEDIUM
1
LOW

Top Products

lp1501 firmware 8 lp1501 8 lp1502 firmware 8 lp1502 8 lp2500 firmware 8 lp2500 8 lp4502 firmware 8 lp4502 8 ep4502 firmware 8 ep4502 8
17 CVEs
5.3
CVE-2024-23806

Sensitive data can be extracted from HID iCLASS SE reader configuration cards. This could include credential and device

5.9
CVE-2024-22388

Certain configuration available in the communication channel for encoders could expose sensitive data when reader config

7.3
CVE-2023-2904

The External Visitor Manager portal of HID’s SAFE versions 5.8.0 through 5.11.3 are vulnerable to manipulation within we

8.8
CVE-2022-31486

An authenticated attacker can send a specially crafted route to the “edit_route.cgi” binary and have it execute shell co

5.3
CVE-2022-31485

An unauthenticated attacker can send a specially crafted packets to update the “notes” section of the home page of the w

7.5
CVE-2022-31484

An unauthenticated attacker can send a specially crafted network packet to delete a user from the web interface. This vu

9.1
CVE-2022-31483

An authenticated attacker can upload a file with a filename including “..” and “/” to achieve the ability to upload the

7.5
CVE-2022-31482

An unauthenticated attacker can send a specially crafted unauthenticated HTTP request to the device that can overflow a

10.0
CVE-2022-31481

An unauthenticated attacker can send a specially crafted update file to the device that can overflow a buffer. This vuln

7.5
CVE-2022-31480

An unauthenticated attacker could arbitrarily upload firmware files to the target device, ultimately causing a Denial-of

9.6
CVE-2022-31479

An unauthenticated attacker can update the hostname with a specially crafted name that will allow for shell commands to

9.6
CVE-2020-36283

HID OMNIKEY 5427 and OMNIKEY 5127 readers are vulnerable to CSRF when using the EEM driver (Ethernet Emulation Mode). By

5.9
CVE-2019-13603

An issue was discovered in the HID Global DigitalPersona (formerly Crossmatch) U.are.U 4500 Fingerprint Reader Windows B

8.4
CVE-2018-17492

EasyLobby Solo contains default administrative credentials. An attacker could exploit this vulnerability to gain full ac

8.4
CVE-2018-17491

EasyLobby Solo could allow a local attacker to gain elevated privileges on the system. By visiting the kiosk and typing

7.7
CVE-2018-17490

EasyLobby Solo is vulnerable to a denial of service. By visiting the kiosk and accessing the task manager, a local attac

2.9
CVE-2018-17489

EasyLobby Solo could allow a local attacker to obtain sensitive information, caused by the storing of the social securit

Frequently Asked Questions

How many CVEs affect Hidglobal?

Hidglobal has 111 CVE records in our database, including 34 critical and 44 high severity vulnerabilities.

What are the most severe Hidglobal vulnerabilities?

Hidglobal has 34 critical severity (CVSS 9.0+) and 44 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.

How can I scan for Hidglobal vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Hidglobal products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Hidglobal Vulnerabilities

CyberStrike scans your infrastructure for Hidglobal vulnerabilities and provides real-time remediation guidance.

Get Started