CVE-2020-29028: Secomea Gatemanager Firmware

Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.

Cross-site Scripting (XSS) vulnerability in web GUI of Secomea GateManager allows an attacker to inject arbitrary javascript code. This issue affects: Secomea GateManager all versions prior to 9.4.

Affected products

  • Secomea Gatemanager Firmware: before 9.4.621054022 (fixed in 9.4.621054022)

Published 2021-03-05. Last modified 2026-06-17.