Systech develops industrial networking and gateway appliances, notably the SysLink SL-1000 modular gateway and NDS-5000 series, which serve as control and communication interfaces in operational technology environments. The vulnerability surface centers on web-interface input-handling weaknesses, including cross-site scripting and command injection, reflecting the exposure inherent to remotely accessible network appliances.
The number and severity of CVEs published that impact products developed by Systech over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2016-2331CRITICAL The web interface on SysLINK SL-1000 Machine-to-Machine (M2M) Modular Gateway devices with firmware before 01A.8 has a default password, which makes it easier for remote attackers | Apr 25, 2016 | 9.8 | 29 | NO | NO |
CVE-2016-2332HIGH flu.cgi in the web interface on SysLINK SL-1000 Machine-to-Machine (M2M) Modular Gateway devices with firmware before 01A.8 allows remote authenticated users to execute arbitrary c | Apr 25, 2016 | 8.8 | 27 | NO | NO |
CVE-2020-7006HIGH Systech Corporation NDS-5000 Terminal Server, NDS/5008 (8 Port, RJ45), firmware Version 02D.30. Successful exploitation of this vulnerability could allow information disclosure, li | Mar 19, 2020 | 8.4 | 26 | NO | NO |
CVE-2016-2333HIGH SysLINK SL-1000 Machine-to-Machine (M2M) Modular Gateway devices with firmware before 01A.8 use the same hardcoded encryption key across different customers' installations, which a | Apr 25, 2016 | 7.5 | 23 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Systech.
Media articles that mention a CVE ID that affects a product developed by Systech — matched by CVE ID, not by vendor name.