Перейти к содержимому
Noroxi

Записи Verizon

21 опубликованных записей вендора verizon.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
3
С записью об исправлении
9,5 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

21 записей
  • CVE-2022-28375
    40В плане

    Verizon 5G Home LVSKIHP OutDoorUnit (ODU) 3.33.101.0 does not property sanitize user-controlled parameters within the crtcswitchsimprofile f

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    verizon · lvskihp outdoorunit firmware14 июл. 2022 г.

  • CVE-2022-28373
    40В плане

    Verizon 5G Home LVSKIHP InDoorUnit (IDU) 3.4.66.162 does not properly sanitize user-controlled parameters within the crtcreadpartition funct

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    verizon · lvskihp indoorunit firmware14 июл. 2022 г.

  • CVE-2022-28369
    39Наблюдать

    Verizon 5G Home LVSKIHP InDoorUnit (IDU) 3.4.66.162 does not validate the user-provided URL within the crtcmode function's enable_ssh sub-op

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    verizon · lvskihp indoorunit firmware14 июл. 2022 г.

  • CVE-2019-3914
    37Наблюдать

    Remote command injection vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows a remote, authenticated a

    ВысокаяCVSS 7,2Эксплойта нетEPSS 30 %

    verizon · fios quantum gateway g1100 firmware11 апр. 2019 г.

  • CVE-2022-28374
    36Наблюдать

    Verizon 5G Home LVSKIHP OutDoorUnit (ODU) 3.33.101.0 does not property sanitize user-controlled parameters within the DMACC URLs on the Sett

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    verizon · lvskihp outdoorunit firmware14 июл. 2022 г.

  • CVE-2020-7660
    33Наблюдать

    serialize-javascript prior to 3.1.0 allows remote attackers to inject arbitrary code via the function "deleteFunctions" within "index.js".

    ВысокаяCVSS 8,1Эксплойта нетEPSS 3 %

    verizon · serialize-javascript1 июн. 2020 г.

  • CVE-2022-28376
    32Наблюдать

    Verizon 5G Home LVSKIHP outside devices through 2022-02-15 allow anyone (knowing the device's serial number) to access a CPE admin website,

    ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %

    verizon · lvskihp firmware3 апр. 2022 г.

  • CVE-2019-3916
    31Наблюдать

    Information disclosure vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows an remote, unauthenticated

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    verizon · fios quantum gateway g1100 firmware11 апр. 2019 г.

  • CVE-2022-29729
    30Наблюдать

    Verizon 4G LTE Network Extender GA4.38 - V0.4.038.2131 utilizes a weak default admin password generation algorithm which generates passwords

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    verizon · 4g lte network extender firmware2 июн. 2022 г.

  • CVE-2022-28377
    30Наблюдать

    On Verizon 5G Home LVSKIHP InDoorUnit (IDU) 3.4.66.162 and OutDoorUnit (ODU) 3.33.101.0 devices, the CRTC and ODU RPC endpoints rely on a st

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    verizon · lvskihp indoorunit firmware14 июл. 2022 г.

  • CVE-2022-28372
    30Наблюдать

    On Verizon 5G Home LVSKIHP InDoorUnit (IDU) 3.4.66.162 and OutDoorUnit (ODU) 3.33.101.0 devices, the CRTC and ODU RPC endpoints provide a me

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    verizon · lvskihp indoorunit firmware14 июл. 2022 г.

  • CVE-2019-3915
    30Наблюдать

    Authentication Bypass by Capture-replay vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows an unauthe

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    verizon · fios quantum gateway g1100 firmware11 апр. 2019 г.

  • CVE-2022-28371
    30Наблюдать

    On Verizon 5G Home LVSKIHP InDoorUnit (IDU) 3.4.66.162 and OutDoorUnit (ODU) 3.33.101.0 devices, the CRTC and ODU RPC endpoints rely on a st

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    verizon · lvskihp indoorunit firmware14 июл. 2022 г.

  • CVE-2022-28370
    30Наблюдать

    On Verizon 5G Home LVSKIHP OutDoorUnit (ODU) 3.33.101.0 devices, the RPC endpoint crtc_fw_upgrade provides a means of provisioning a firmwar

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    verizon · lvskihp outdoorunit firmware14 июл. 2022 г.

  • CVE-2013-0126
    28Наблюдать

    Multiple cross-site request forgery (CSRF) vulnerabilities in index.cgi on the Verizon FIOS Actiontec MI424WR-GEN3I router with firmware 40.

    СредняяCVSS 6,8Proof of conceptEPSS 3 %

    verizon · fios actiontec mi424wr-gen31 router firmware21 мар. 2013 г.

  • CVE-2013-4875
    24Наблюдать

    The Uboot bootloader on the Verizon Wireless Network Extender SCS-2U01 allows physically proximate attackers to bypass the intended boot pro

    СредняяCVSS 6,2Эксплойта нетEPSS 1 %

    verizon · wireless network extender18 июл. 2013 г.

  • CVE-2013-4876
    24Наблюдать

    The Verizon Wireless Network Extender SCS-2U01 has a hardcoded password for the root account, which makes it easier for physically proximate

    СредняяCVSS 6,2Эксплойта нетEPSS 1 %

    verizon · wireless network extender18 июл. 2013 г.

  • CVE-2013-4874
    24Наблюдать

    The Uboot bootloader on the Verizon Wireless Network Extender SCS-26UC4 allows physically proximate attackers to obtain root access by conne

    СредняяCVSS 6,2Эксплойта нетEPSS 1 %

    verizon · wireless network extender18 июл. 2013 г.

  • CVE-2019-16769
    21Наблюдать

    Affected versions of serialize-javascript are vulnerable to Cross-site Scripting (XSS)

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    verizon · serialize-javascript5 дек. 2019 г.

  • CVE-2023-38301
    13Наблюдать

    An issue was discovered in a third-party component related to vendor.gsm.serial, shipped on devices from multiple device manufacturers.

    НизкаяCVSS 3,4Эксплойта нетEPSS 0 %

    22 апр. 2024 г.

  • CVE-2013-4877
    10Наблюдать

    The Verizon Wireless Network Extender SCS-26UC4 and SCS-2U01 does not use CAVE authentication, which makes it easier for remote attackers to

    НизкаяCVSS 2,6Эксплойта нетEPSS 1 %

    verizon · wireless network extender18 июл. 2013 г.