nexxtsolutions kayıtları
nexxtsolutions üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-256 Plaintext Storage of a Password1
- CWE-307 Improper Restriction of Excessive Authentication Attempts1
- CWE-312 Cleartext Storage of Sensitive Information1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
- CWE-863 Incorrect Authorization1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
54Planlayın | CVE-2022-44149Kavram kanıtı | The web service on Nexxt Amp300 ARN02304U8 42.103.1.5095 and 80.103.2.5045 devices allows remote OS command execution by placing &telnetd innexxtsolutions · amp300 firmware · CWE-78 | Yüksek8,8 | — | %64,4 | 6 Oca 2023 |
40Planlayın | CVE-2022-46080Kavram kanıtı | Nexxt Nebula 1200-AC 15.03.06.60 allows authentication bypass and command execution by using the HTTPD service to enable TELNET.nexxtsolutions · nebula1200-ac firmware · CWE-863 | Kritik9,8 | — | %2,6 | 5 Tem 2023 |
34İzleyin | CVE-2026-31847İstismar yok | Hidden Functionality Enables Remote Telnet Activation via /goform/setSysTools in Nexxt Nebula 300+nexxtsolutions · nebula300plus firmware · CWE-912 | Yüksek8,5 | — | %0,7 | 23 Mar 2026 |
34İzleyin | CVE-2026-31848İstismar yok | Reversible ecos_pw Cookie Allows Authentication Bypass in Nexxt Nebula 300+nexxtsolutions · nebula300plus firmware · CWE-312 | Yüksek8,7 | — | %0,5 | 23 Mar 2026 |
30İzleyin | CVE-2026-31851İstismar yok | Nexxt Nebula 300+ - Lack of Rate Limiting Enables Brute-Force Attacksnexxtsolutions · nebula300plus firmware · CWE-307 | Yüksek7,7 | — | %0,7 | 23 Mar 2026 |
28İzleyin | CVE-2026-31849İstismar yok | Missing CSRF Protection on Administrative Endpoints in Nexxt Nebula 300+nexxtsolutions · nebula300plus firmware · CWE-352 | Yüksek7,2 | — | %0,2 | 23 Mar 2026 |
27İzleyin | CVE-2026-31850İstismar yok | Plaintext Storage of Credentials in Configuration Backup in Nexxt Nebula 300+nexxtsolutions · nebula300plus firmware · CWE-256 | Orta6,8 | — | %0,3 | 23 Mar 2026 |
- CVE-2022-4414954Planlayın
The web service on Nexxt Amp300 ARN02304U8 42.103.1.5095 and 80.103.2.5045 devices allows remote OS command execution by placing &telnetd in
YüksekCVSS 8,8Kavram kanıtıEPSS %64nexxtsolutions · amp300 firmware6 Oca 2023
- CVE-2022-4608040Planlayın
Nexxt Nebula 1200-AC 15.03.06.60 allows authentication bypass and command execution by using the HTTPD service to enable TELNET.
KritikCVSS 9,8Kavram kanıtıEPSS %3nexxtsolutions · nebula1200-ac firmware5 Tem 2023
- CVE-2026-3184734İzleyin
Hidden Functionality Enables Remote Telnet Activation via /goform/setSysTools in Nexxt Nebula 300+
YüksekCVSS 8,5İstismar yokEPSS %1nexxtsolutions · nebula300plus firmware23 Mar 2026
- CVE-2026-3184834İzleyin
Reversible ecos_pw Cookie Allows Authentication Bypass in Nexxt Nebula 300+
YüksekCVSS 8,7İstismar yokEPSS %0nexxtsolutions · nebula300plus firmware23 Mar 2026
- CVE-2026-3185130İzleyin
Nexxt Nebula 300+ - Lack of Rate Limiting Enables Brute-Force Attacks
YüksekCVSS 7,7İstismar yokEPSS %1nexxtsolutions · nebula300plus firmware23 Mar 2026
- CVE-2026-3184928İzleyin
Missing CSRF Protection on Administrative Endpoints in Nexxt Nebula 300+
YüksekCVSS 7,2İstismar yokEPSS %0nexxtsolutions · nebula300plus firmware23 Mar 2026
- CVE-2026-3185027İzleyin
Plaintext Storage of Credentials in Configuration Backup in Nexxt Nebula 300+
OrtaCVSS 6,8İstismar yokEPSS %0nexxtsolutions · nebula300plus firmware23 Mar 2026