Записи multitech
6 опубликованных записей вендора multitech.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-255 Credentials Management Errors1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2016-10512Эксплойта нет | MultiTech FaxFinder before 4.1.2 stores Passwords unencrypted for maintaining the test connectivity function of its LDAP configuration.multitech · faxfinder · CWE-255 | Критическая9,8 | — | 2,1 % | 29 сент. 2017 г. |
35Наблюдать | CVE-2023-25201Эксплойта нет | Cross Site Request Forgery (CSRF) vulnerability in MultiTech Conduit AP MTCAP2-L4E1 MTCAP2-L4E1-868-042A v.6.0.0 allows a remote attacker tomultitech · conduit ap mtcap2-l4e1-868-042a firmware · CWE-352 | Высокая8,8 | — | 0,5 % | 7 июл. 2023 г. |
30Наблюдать | CVE-2018-17562Эксплойта нет | Multi-Tech FaxFinder before 5.1.6 has SQL Injection via a status/call_details?oid= URI, allowing an attacker to extract the underlying databmultitech · faxfinder · CWE-89 | Высокая7,5 | — | 1,5 % | 3 окт. 2018 г. |
30Наблюдать | CVE-2003-0126Эксплойта нет | The web interface for SOHO Routefinder 550 firmware 4.63 and earlier, and possibly later versions, has a default "admin" account with a blanmultitech · routefinder 550 vpn | Высокая7,5 | — | 1,3 % | 18 мар. 2003 г. |
29Наблюдать | CVE-2020-7594Эксплойта нет | MultiTech Conduit MTCDT-LVW2-24XX 1.4.17-ocea-13592 devices allow remote authenticated administrators to execute arbitrary OS commands by namultitech · conduit mtcdt-lvw2-246a firmware · CWE-78 | Высокая7,2 | — | 2,5 % | 21 янв. 2020 г. |
23Наблюдать | CVE-2003-0125Proof of concept | Buffer overflow in the web interface for SOHO Routefinder 550 before firmware 4.63 allows remote attackers to cause a denial of service (rebmultitech · routefinder 550 vpn | Средняя5,0 | — | 10,8 % | 18 мар. 2003 г. |
- CVE-2016-1051240В плане
MultiTech FaxFinder before 4.1.2 stores Passwords unencrypted for maintaining the test connectivity function of its LDAP configuration.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %multitech · faxfinder29 сент. 2017 г.
- CVE-2023-2520135Наблюдать
Cross Site Request Forgery (CSRF) vulnerability in MultiTech Conduit AP MTCAP2-L4E1 MTCAP2-L4E1-868-042A v.6.0.0 allows a remote attacker to
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %multitech · conduit ap mtcap2-l4e1-868-042a firmware7 июл. 2023 г.
- CVE-2018-1756230Наблюдать
Multi-Tech FaxFinder before 5.1.6 has SQL Injection via a status/call_details?oid= URI, allowing an attacker to extract the underlying datab
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %multitech · faxfinder3 окт. 2018 г.
- CVE-2003-012630Наблюдать
The web interface for SOHO Routefinder 550 firmware 4.63 and earlier, and possibly later versions, has a default "admin" account with a blan
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %multitech · routefinder 550 vpn18 мар. 2003 г.
- CVE-2020-759429Наблюдать
MultiTech Conduit MTCDT-LVW2-24XX 1.4.17-ocea-13592 devices allow remote authenticated administrators to execute arbitrary OS commands by na
ВысокаяCVSS 7,2Эксплойта нетEPSS 2 %multitech · conduit mtcdt-lvw2-246a firmware21 янв. 2020 г.
- CVE-2003-012523Наблюдать
Buffer overflow in the web interface for SOHO Routefinder 550 before firmware 4.63 allows remote attackers to cause a denial of service (reb
СредняяCVSS 5,0Proof of conceptEPSS 11 %multitech · routefinder 550 vpn18 мар. 2003 г.