UHP is a niche embedded device vendor with a focused product line centered on the UHP-100 and its firmware variants. Its reported vulnerability surface recurs through cross-site scripting issues in web-based interfaces, a weakness typical of devices with embedded management portals. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Uhp over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-7236MEDIUM UHP UHP-100 3.4.1.15, 3.4.2.4, and 3.4.3 devices allow XSS via cw2?td= (Site Name field of the Site Setup section). | Jan 19, 2020 | 6.1 | 21 | NO | NO |
CVE-2020-7235MEDIUM UHP UHP-100 3.4.1.15, 3.4.2.4, and 3.4.3 devices allow XSS via cB3?ta= (profile title). | Jan 19, 2020 | 6.1 | 21 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Uhp.
Media articles that mention a CVE ID that affects a product developed by Uhp — matched by CVE ID, not by vendor name.