Skip to content
Noroxi

waterfall-security records

17 published records for vendor waterfall-security.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
7
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

17 records
  • Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the

    CriticalCVSS 9.3No exploitEPSS 1%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the

    CriticalCVSS 9.3No exploitEPSS 1%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the

    CriticalCVSS 9.3No exploitEPSS 1%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the

    CriticalCVSS 9.3No exploitEPSS 1%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the

    CriticalCVSS 9.3No exploitEPSS 1%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the

    CriticalCVSS 9.3No exploitEPSS 1%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the

    CriticalCVSS 9.3No exploitEPSS 1%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-288: Authentication Bypass Using an Alternate Path or Channel in the Console WebUI in Waterfall WF-500

    CriticalCVSS 9.3No exploitEPSS 0%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-23: Relative Path Traversal in the Administration WebUI in Waterfall WF-500 TX and RX Hosts in version

    HighCVSS 8.8No exploitEPSS 0%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the

    HighCVSS 8.6No exploitEPSS 1%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the

    HighCVSS 8.6No exploitEPSS 1%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the

    HighCVSS 8.5No exploitEPSS 1%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the

    HighCVSS 8.6No exploitEPSS 1%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-23: Relative Path Traversal in the Console WebUI in Waterfall WF-500 TX and RX Hosts in version 7.9.1.

    HighCVSS 8.7No exploitEPSS 0%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in Wate

    HighCVSS 7.5No exploitEPSS 1%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-23: Relative Path Traversal (Zip Slip) in Waterfall WF-500 RX Host in version 7.9.1.0 R2502171040 that

    HighCVSS 7.5No exploitEPSS 0%

    waterfall-security · wf-500 firmwareMay 29, 2026

  • Nozomi Networks Labs identified a CWE-125: Out-of-bounds Read in Waterfall WF-500 RX Host in version 7.10.0.0 R2601141040 that allows attack

    HighCVSS 7.5No exploitEPSS 0%

    waterfall-security · wf-500 firmwareMay 29, 2026