ASKEY records
7 published records for vendor askey.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 3
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')3
- CWE-20 Improper Input Validation1
- CWE-276 Incorrect Default Permissions1
- CWE-330 Use of Insufficiently Random Values1
- CWE-521 Weak Password Requirements1
The weakness classes this vendor ships most often: where to look.
CWEAll records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2020-15357No exploit | Network Analysis functionality in Askey AP5100W_Dual_SIG_1.01.097 and all prior versions allows remote attackers to execute arbitrary commanaskey · ap5100w firmware · CWE-78 | Critical9.8 | — | 4.3% | Dec 11, 2020 |
40Plan | CVE-2020-8614No exploit | An issue was discovered on Askey AP4000W TDC_V1.01.003 devices.askey · ap4000w firmware · CWE-20 | Critical9.8 | — | 2.6% | Feb 13, 2020 |
40Plan | CVE-2020-26201No exploit | Askey AP5100W_Dual_SIG_1.01.097 and all prior versions use a weak password at the Operating System (rlx-linux) level.askey · ap5100w firmware · CWE-521 | Critical9.8 | — | 2.4% | Dec 10, 2020 |
36Monitor | CVE-2020-28695No exploit | Askey Fiber Router RTF3505VW-N1 BR_SV_g000_R3505VWN1001_s32_7 devices allow Remote Code Execution and retrieval of admin credentials to log askey · rtf3505vw-n1 br sv g000 r3505vwn1001 s32 7 firmware · CWE-78 | High8.8 | — | 2.3% | Mar 26, 2021 |
31Monitor | CVE-2022-47040No exploit | An issue in ASKEY router RTF3505VW-N1 BR_SV_g000_R3505VMN1001_s32_7 allows attackers to escalate privileges via running the tcpdump command askey · rtf3505vw-n1 firmware · CWE-276 | High7.8 | — | 0.3% | Jan 26, 2023 |
28Monitor | CVE-2024-5403No exploit | ASKEY 5G NR Small Cell - Command Injectionaskey · 5g nr small cell · CWE-78 | High7.2 | — | 0.6% | May 27, 2024 |
23Monitor | CVE-2020-15023No exploit | Askey AP5100W devices through AP5100W_Dual_SIG_1.01.097 are affected by WPS PIN offline brute-force cracking.askey · ap5100w firmware · CWE-330 | Medium5.9 | — | 1.6% | Dec 11, 2020 |
- CVE-2020-1535740Plan
Network Analysis functionality in Askey AP5100W_Dual_SIG_1.01.097 and all prior versions allows remote attackers to execute arbitrary comman
CriticalCVSS 9.8No exploitEPSS 4%askey · ap5100w firmwareDec 11, 2020
- CVE-2020-861440Plan
An issue was discovered on Askey AP4000W TDC_V1.01.003 devices.
CriticalCVSS 9.8No exploitEPSS 3%askey · ap4000w firmwareFeb 13, 2020
- CVE-2020-2620140Plan
Askey AP5100W_Dual_SIG_1.01.097 and all prior versions use a weak password at the Operating System (rlx-linux) level.
CriticalCVSS 9.8No exploitEPSS 2%askey · ap5100w firmwareDec 10, 2020
- CVE-2020-2869536Monitor
Askey Fiber Router RTF3505VW-N1 BR_SV_g000_R3505VWN1001_s32_7 devices allow Remote Code Execution and retrieval of admin credentials to log
HighCVSS 8.8No exploitEPSS 2%askey · rtf3505vw-n1 br sv g000 r3505vwn1001 s32 7 firmwareMar 26, 2021
- CVE-2022-4704031Monitor
An issue in ASKEY router RTF3505VW-N1 BR_SV_g000_R3505VMN1001_s32_7 allows attackers to escalate privileges via running the tcpdump command
HighCVSS 7.8No exploitEPSS 0%askey · rtf3505vw-n1 firmwareJan 26, 2023
- CVE-2024-540328Monitor
ASKEY 5G NR Small Cell - Command Injection
HighCVSS 7.2No exploitEPSS 1%askey · 5g nr small cellMay 27, 2024
- CVE-2020-1502323Monitor
Askey AP5100W devices through AP5100W_Dual_SIG_1.01.097 are affected by WPS PIN offline brute-force cracking.
MediumCVSS 5.9No exploitEPSS 2%askey · ap5100w firmwareDec 11, 2020