Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

COMMAX Co., Ltd. — Vulnerabilities & Security Advisories 8

Browse all 8 CVE security advisories affecting COMMAX Co., Ltd.. AI-powered Chinese analysis, POCs, and references for each vulnerability.

COMMAX Co., Ltd. specializes in smart home and building automation systems, focusing on intercoms, access control, and IoT devices. Historically, their products have exhibited vulnerabilities including remote code execution, cross-site scripting, and privilege escalation, often stemming from inadequate input validation and default credentials. Security researchers have identified multiple authentication bypass flaws and insecure network protocols in their devices. While no major public security incidents have been widely reported, the accumulation of 8 CVEs indicates persistent security challenges in their product development lifecycle, particularly in securing network interfaces and firmware updates.

CVE IDTitleCVSSSeverityPublished
CVE-2021-47743 COMMAX Biometric Access Control System 1.0.0 Reflected XSS via Cookie Parameters — COMMAX Biometric Access Control SystemCWE-79 6.1 Medium2025-12-31
CVE-2021-47719 CNC_Ctrl DllUnregisterServer f5501 Access Violation — COMMAX WebViewer ActiveX ControlCWE-787 9.8AICriticalAI2025-12-09
CVE-2021-47710 COMMAX Smart Home Ruvie CCTV Bridge DVR Service RTSP Credentials Disclosure — Smart Home Ruvie CCTV Bridge DVR ServiceCWE-306 7.5AIHighAI2025-12-09
CVE-2021-47709 COMMAX Smart Home Ruvie CCTV Bridge DVR Service Config Write / DoS — Smart Home Ruvie CCTV Bridge DVR ServiceCWE-306 9.1AICriticalAI2025-12-09
CVE-2021-47708 COMMAX Smart Home IoT Control System SQL Injection Authentication Bypass — Smart Home IoT Control SystemCWE-89 9.8AICriticalAI2025-12-09
CVE-2021-47707 COMMAX CVD-Axx DVR Weak Default Credentials Stream Disclosure — COMMAX CVD-Axx DVRCWE-1392 9.1AICriticalAI2025-12-09
CVE-2021-47706 COMMAX Biometric Access Control System Authentication Bypass — COMMAX Biometric Access Control SystemCWE-565 7.5AIHighAI2025-12-09
CVE-2021-47705 CNC_Ctrl DllUnregisterServer Access Violation — COMMAX UMS Client ActiveX ControlCWE-787 8.4AIHighAI2025-12-09

This page lists every published CVE security advisory associated with COMMAX Co., Ltd.. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.