Intelbras kayıtları
intelbras üreticisine ait 51 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 3
- Düzeltme kaydı olan
- %7,8
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-352 Cross-Site Request Forgery (CSRF)9
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')9
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor4
- CWE-640 Weak Password Recovery Mechanism for Forgotten Password2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-284 Improper Access Control2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
51 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
57Planlayın | CVE-2017-14942Kavram kanıtı | Intelbras WRN 150 devices allow remote attackers to read the configuration file, and consequently bypass authentication, via a direct requesintelbras · wrn 150 firmware · CWE-552 | Kritik9,8 | — | %60,9 | 29 Eyl 2017 |
49Planlayın | CVE-2021-3017Kavram kanıtı | The web interface on Intelbras WIN 300 and WRN 342 devices through 2021-01-04 allows remote attackers to discover credentials by reading theintelbras · win 300 firmware | Yüksek7,5 | — | %63,0 | 14 Nis 2021 |
49Planlayın | CVE-2018-11094Kavram kanıtı | An issue was discovered on Intelbras NCLOUD 300 1.0 devices.intelbras · ncloud 300 firmware · CWE-798 | Kritik9,8 | — | %33,4 | 15 May 2018 |
46Planlayın | CVE-2022-40005İstismar yok | Intelbras WiFiber 120AC inMesh before 1-1-220826 allows command injection by authenticated users, as demonstrated by the /boaform/formPing6 intelbras · wifiber 120ac inmesh firmware · CWE-78 | Yüksek8,8 | — | %35,0 | 25 Ara 2022 |
41Planlayın | CVE-2023-36144Kavram kanıtı | An authentication bypass in Intelbras Switch SG 2404 MR in firmware 1.00.54 allows an unauthenticated attacker to download the backup file ointelbras · sg 2404 mr firmware · CWE-862 | Yüksek7,5 | — | %36,5 | 30 Haz 2023 |
40Planlayın | CVE-2018-10369İstismar yok | A Cross-site scripting (XSS) vulnerability was discovered on Intelbras Win 240 V1.1.0 devices.intelbras · win 240 firmware · CWE-79 | Kritik9,8 | — | %1,9 | 15 Ağu 2018 |
39İzleyin | CVE-2025-26063İstismar yok | An issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to execute arbitrary code via injecting a crafted paintelbras · rx 1500 firmware · CWE-77 | Kritik9,8 | — | %1,3 | 31 Tem 2025 |
39İzleyin | CVE-2019-17600İstismar yok | Intelbras IWR 1000N 1.6.4 devices allow disclosure of the administrator login name and password because v1/system/user is mishandled.intelbras · iwr 1000n firmware · CWE-352 | Kritik9,8 | — | %1,2 | 15 Eki 2019 |
39İzleyin | CVE-2025-26062İstismar yok | An access control issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to access the router's settings file intelbras · rx 1500 firmware · CWE-284 | Kritik9,8 | — | %1,1 | 31 Tem 2025 |
36İzleyin | CVE-2019-11416Kavram kanıtı | A CSRF issue was discovered on Intelbras IWR 3000N 1.5.0 devices, leading to complete control of the router, as demonstrated by v1/system/usintelbras · iwr 3000n firmware · CWE-352 | Yüksek8,8 | — | %3,9 | 22 Nis 2019 |
36İzleyin | CVE-2021-32403Kavram kanıtı | Intelbras Router RF 301K Firmware 1.1.2 is vulnerable to Cross Site Request Forgery (CSRF) due to lack of security mechanisms for token protintelbras · rf 301k firmware · CWE-352 | Yüksek8,8 | — | %2,5 | 17 May 2021 |
35İzleyin | CVE-2019-11414İstismar yok | An issue was discovered on Intelbras IWR 3000N 1.5.0 devices.intelbras · iwr 3000n firmware · CWE-640 | Yüksek8,8 | — | %1,3 | 22 Nis 2019 |
35İzleyin | CVE-2019-20004İstismar yok | An issue was discovered on Intelbras IWR 3000N 1.8.7 devices.intelbras · iwr 3000n firmware · CWE-640 | Yüksek8,8 | — | %1,2 | 5 Oca 2020 |
35İzleyin | CVE-2018-12456İstismar yok | Intelbras NPLUG 1.0.0.14 wireless repeater devices have no CSRF token protection in the web interface, allowing attackers to perform actionsintelbras · nplug firmware · CWE-352 | Yüksek8,8 | — | %0,9 | 10 Eki 2018 |
35İzleyin | CVE-2019-19995İstismar yok | A CSRF issue was discovered on Intelbras IWR 3000N 1.8.7 devices, leading to complete control of the router, as demonstrated by v1/system/usintelbras · iwr 3000n firmware · CWE-352 | Yüksek8,8 | — | %0,7 | 26 Ara 2019 |
35İzleyin | CVE-2019-19517İstismar yok | Intelbras RF1200 1.1.3 devices allow CSRF to bypass the login.html form, as demonstrated by launching a scrapy process.intelbras · action rf 1200 firmware · CWE-352 | Yüksek8,8 | — | %0,5 | 5 May 2020 |
35İzleyin | CVE-2021-32402İstismar yok | Intelbras Router RF 301K Firmware 1.1.2 is vulnerable to Cross Site Request Forgery (CSRF) due to lack of validation and insecure configuratintelbras · rf 301k firmware · CWE-352 | Yüksek8,8 | — | %0,5 | 17 May 2021 |
35İzleyin | CVE-2020-8829İstismar yok | CSRF on Intelbras CIP 92200 devices allows an attacker to access the panel and perform scraping or other analysis.intelbras · cip 92200 firmware · CWE-352 | Yüksek8,8 | — | %0,5 | 5 May 2020 |
34İzleyin | CVE-2019-11415Kavram kanıtı | An issue was discovered on Intelbras IWR 3000N 1.5.0 devices.intelbras · iwr 3000n firmware | Yüksek7,5 | — | %13,7 | 22 Nis 2019 |
34İzleyin | CVE-2018-12455Kavram kanıtı | Intelbras NPLUG 1.0.0.14 wireless repeater devices have a critical vulnerability that allows an attacker to authenticate in the web interfacintelbras · nplug firmware · CWE-287 | Yüksek8,1 | — | %5,9 | 10 Eki 2018 |
34İzleyin | CVE-2025-55976İstismar yok | Intelbras IWR 3000N 1.9.8 exposes the Wi-Fi password in plaintext via the /api/wireless endpoint.intelbras · iwr 3000n firmware · CWE-200 | Yüksek8,4 | — | %3,2 | 10 Eyl 2025 |
34İzleyin | CVE-2024-9325İstismar yok | Intelbras InControl incontrol-service-watchdog.exe unquoted search pathintelbras · incontrol web · CWE-426 | Yüksek8,5 | — | %0,3 | 29 Eyl 2024 |
34İzleyin | CVE-2024-6080İstismar yok | Intelbras InControl incontrolWebcam Service unquoted search pathintelbras · incontrol · CWE-426 | Yüksek8,5 | — | %0,2 | 17 Haz 2024 |
32İzleyin | CVE-2019-19142Kavram kanıtı | Intelbras WRN240 devices do not require authentication to replace the firmware via a POST request to the incoming/Firmware.cfg URI.intelbras · wrn 240 firmware · CWE-306 | Yüksek7,5 | — | %7,8 | 16 Oca 2020 |
32İzleyin | CVE-2024-22773İstismar yok | Intelbras Action RF 1200 routers 1.2.2 and earlier and Action RG 1200 routers 2.1.7 and earlier expose the Password in Cookie resulting in Lintelbras · action rf 1200 firmware · CWE-922 | Yüksek8,1 | — | %1,0 | 5 Şub 2024 |
- CVE-2017-1494257Planlayın
Intelbras WRN 150 devices allow remote attackers to read the configuration file, and consequently bypass authentication, via a direct reques
KritikCVSS 9,8Kavram kanıtıEPSS %61intelbras · wrn 150 firmware29 Eyl 2017
- CVE-2021-301749Planlayın
The web interface on Intelbras WIN 300 and WRN 342 devices through 2021-01-04 allows remote attackers to discover credentials by reading the
YüksekCVSS 7,5Kavram kanıtıEPSS %63intelbras · win 300 firmware14 Nis 2021
- CVE-2018-1109449Planlayın
An issue was discovered on Intelbras NCLOUD 300 1.0 devices.
KritikCVSS 9,8Kavram kanıtıEPSS %33intelbras · ncloud 300 firmware15 May 2018
- CVE-2022-4000546Planlayın
Intelbras WiFiber 120AC inMesh before 1-1-220826 allows command injection by authenticated users, as demonstrated by the /boaform/formPing6
YüksekCVSS 8,8İstismar yokEPSS %35intelbras · wifiber 120ac inmesh firmware25 Ara 2022
- CVE-2023-3614441Planlayın
An authentication bypass in Intelbras Switch SG 2404 MR in firmware 1.00.54 allows an unauthenticated attacker to download the backup file o
YüksekCVSS 7,5Kavram kanıtıEPSS %37intelbras · sg 2404 mr firmware30 Haz 2023
- CVE-2018-1036940Planlayın
A Cross-site scripting (XSS) vulnerability was discovered on Intelbras Win 240 V1.1.0 devices.
KritikCVSS 9,8İstismar yokEPSS %2intelbras · win 240 firmware15 Ağu 2018
- CVE-2025-2606339İzleyin
An issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to execute arbitrary code via injecting a crafted pa
KritikCVSS 9,8İstismar yokEPSS %1intelbras · rx 1500 firmware31 Tem 2025
- CVE-2019-1760039İzleyin
Intelbras IWR 1000N 1.6.4 devices allow disclosure of the administrator login name and password because v1/system/user is mishandled.
KritikCVSS 9,8İstismar yokEPSS %1intelbras · iwr 1000n firmware15 Eki 2019
- CVE-2025-2606239İzleyin
An access control issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to access the router's settings file
KritikCVSS 9,8İstismar yokEPSS %1intelbras · rx 1500 firmware31 Tem 2025
- CVE-2019-1141636İzleyin
A CSRF issue was discovered on Intelbras IWR 3000N 1.5.0 devices, leading to complete control of the router, as demonstrated by v1/system/us
YüksekCVSS 8,8Kavram kanıtıEPSS %4intelbras · iwr 3000n firmware22 Nis 2019
- CVE-2021-3240336İzleyin
Intelbras Router RF 301K Firmware 1.1.2 is vulnerable to Cross Site Request Forgery (CSRF) due to lack of security mechanisms for token prot
YüksekCVSS 8,8Kavram kanıtıEPSS %2intelbras · rf 301k firmware17 May 2021
- CVE-2019-1141435İzleyin
An issue was discovered on Intelbras IWR 3000N 1.5.0 devices.
YüksekCVSS 8,8İstismar yokEPSS %1intelbras · iwr 3000n firmware22 Nis 2019
- CVE-2019-2000435İzleyin
An issue was discovered on Intelbras IWR 3000N 1.8.7 devices.
YüksekCVSS 8,8İstismar yokEPSS %1intelbras · iwr 3000n firmware5 Oca 2020
- CVE-2018-1245635İzleyin
Intelbras NPLUG 1.0.0.14 wireless repeater devices have no CSRF token protection in the web interface, allowing attackers to perform actions
YüksekCVSS 8,8İstismar yokEPSS %1intelbras · nplug firmware10 Eki 2018
- CVE-2019-1999535İzleyin
A CSRF issue was discovered on Intelbras IWR 3000N 1.8.7 devices, leading to complete control of the router, as demonstrated by v1/system/us
YüksekCVSS 8,8İstismar yokEPSS %1intelbras · iwr 3000n firmware26 Ara 2019
- CVE-2019-1951735İzleyin
Intelbras RF1200 1.1.3 devices allow CSRF to bypass the login.html form, as demonstrated by launching a scrapy process.
YüksekCVSS 8,8İstismar yokEPSS %1intelbras · action rf 1200 firmware5 May 2020
- CVE-2021-3240235İzleyin
Intelbras Router RF 301K Firmware 1.1.2 is vulnerable to Cross Site Request Forgery (CSRF) due to lack of validation and insecure configurat
YüksekCVSS 8,8İstismar yokEPSS %1intelbras · rf 301k firmware17 May 2021
- CVE-2020-882935İzleyin
CSRF on Intelbras CIP 92200 devices allows an attacker to access the panel and perform scraping or other analysis.
YüksekCVSS 8,8İstismar yokEPSS %1intelbras · cip 92200 firmware5 May 2020
- CVE-2019-1141534İzleyin
An issue was discovered on Intelbras IWR 3000N 1.5.0 devices.
YüksekCVSS 7,5Kavram kanıtıEPSS %14intelbras · iwr 3000n firmware22 Nis 2019
- CVE-2018-1245534İzleyin
Intelbras NPLUG 1.0.0.14 wireless repeater devices have a critical vulnerability that allows an attacker to authenticate in the web interfac
YüksekCVSS 8,1Kavram kanıtıEPSS %6intelbras · nplug firmware10 Eki 2018
- CVE-2025-5597634İzleyin
Intelbras IWR 3000N 1.9.8 exposes the Wi-Fi password in plaintext via the /api/wireless endpoint.
YüksekCVSS 8,4İstismar yokEPSS %3intelbras · iwr 3000n firmware10 Eyl 2025
- CVE-2024-932534İzleyin
Intelbras InControl incontrol-service-watchdog.exe unquoted search path
YüksekCVSS 8,5İstismar yokEPSS %0intelbras · incontrol web29 Eyl 2024
- CVE-2024-608034İzleyin
Intelbras InControl incontrolWebcam Service unquoted search path
YüksekCVSS 8,5İstismar yokEPSS %0intelbras · incontrol17 Haz 2024
- CVE-2019-1914232İzleyin
Intelbras WRN240 devices do not require authentication to replace the firmware via a POST request to the incoming/Firmware.cfg URI.
YüksekCVSS 7,5Kavram kanıtıEPSS %8intelbras · wrn 240 firmware16 Oca 2020
- CVE-2024-2277332İzleyin
Intelbras Action RF 1200 routers 1.2.2 and earlier and Action RG 1200 routers 2.1.7 and earlier expose the Password in Cookie resulting in L
YüksekCVSS 8,1İstismar yokEPSS %1intelbras · action rf 1200 firmware5 Şub 2024