Skip to content
Noroxi

airspan records

21 published records for vendor airspan.

All records

21 records
  • In Airspan AirSpot 5410 version 0.3.4.1-4 and under there exists a Unauthenticated remote command injection vulnerability.

    CriticalCVSS 9.8Proof of conceptEPSS 55%

    airspan · airspot 5410 firmwareAug 8, 2022

  • The administration panel on the Airspan WiMax ProST 4.1 antenna with 6.5.38.0 software does not verify authentication credentials, which all

    CriticalCVSS 10.0Proof of conceptEPSS 9%

    airspan · wimax prostMar 10, 2008

  • Airspan AirVelocity 1500 software versions prior to 15.18.00.2511 have a root command injection vulnerability in the ActiveBank parameter of

    HighCVSS 8.8No exploitEPSS 25%

    airspan · airvelocity 1500 firmwareAug 15, 2022

  • Airspan Networks Mimosa Improper Authorization

    CriticalCVSS 9.8No exploitEPSS 4%

    airspan · mimosa management platformFeb 18, 2022

  • Airspan Networks Mimosa Incorrect Authorization

    CriticalCVSS 9.8No exploitEPSS 3%

    airspan · mimosa management platformFeb 18, 2022

  • Airspan Networks Mimosa Server-Side Request Forgery (SSRF)

    CriticalCVSS 9.8No exploitEPSS 1%

    airspan · mimosa management platformFeb 18, 2022

  • Airspan Networks Mimosa OS Command Injection

    CriticalCVSS 9.8No exploitEPSS 1%

    airspan · mimosa management platformFeb 18, 2022

  • In Airspan AirSpot 5410 version 0.3.4.1-4 and under there exists an Unauthenticated remote Arbitrary File Upload vulnerability which allows

    CriticalCVSS 9.1No exploitEPSS 2%

    airspan · airspot 5410 firmwareAug 8, 2022

  • Airspan AirVelocity 1500 web management UI displays SNMP credentials in plaintext on software versions older than 15.18.00.2511, and stores

    CriticalCVSS 9.1No exploitEPSS 1%

    airspan · airvelocity 1500 firmwareAug 15, 2022

  • Airspan AirVelocity 1500 software prior to version 15.18.00.2511 had NET-SNMP-EXTEND-MIB enabled on its snmpd service, enabling an attacker

    HighCVSS 8.8No exploitEPSS 2%

    airspan · airvelocity 1500 firmwareAug 15, 2022

  • Airspan AirVelocity 1500 software version 15.18.00.2511 lacks CSRF protections in the eNodeB's web management UI.

    HighCVSS 8.8No exploitEPSS 0%

    airspan · airvelocity 1500 firmwareAug 15, 2022

  • CVE-2008-1542
    31Monitor

    Airspan Base Station Distribution Unit (BSDU) has "topsecret" as its password for the root account, which allows remote attackers to obtain

    HighCVSS 7.5No exploitEPSS 2%

    airspan · base station distribution unitMar 28, 2008

  • CVE-2008-1543
    30Monitor

    The Advanced User Interface Pages in the ProST Web Management component on the Airspan WiMAX ProST have a certain default User ID and passwo

    HighCVSS 7.5No exploitEPSS 1%

    airspan · easy stMar 28, 2008

  • Airspan Networks Mimosa SQL Injection

    HighCVSS 7.5No exploitEPSS 1%

    airspan · mimosa management platformFeb 18, 2022

  • CVE-2022-0138
    30Monitor

    Airspan Networks Mimosa Deserialization of Untrusted Data

    HighCVSS 7.5No exploitEPSS 1%

    airspan · mimosa management platformFeb 18, 2022

  • In Airspan AirSpot 5410 version 0.3.4.1-4 and under there exists a Hidden system command web page.

    HighCVSS 7.2No exploitEPSS 1%

    airspan · airspot 5410 firmwareAug 8, 2022

  • The AirVelocity 1500 prints SNMP credentials on its physically accessible serial port during boot.

    MediumCVSS 6.8No exploitEPSS 0%

    airspan · airvelocity 1500 firmwareAug 15, 2022

  • An authenticated attacker can enumerate and download sensitive files, including the eNodeB's web management UI's TLS private key, the web se

    MediumCVSS 6.5No exploitEPSS 1%

    airspan · airvelocity 1500 firmwareAug 15, 2022

  • Airspan Networks Mimosa Use of a Broken or Risky Cryptographic Algorithm

    MediumCVSS 6.5No exploitEPSS 1%

    airspan · mimosa management platformFeb 18, 2022

  • In Airspan AirSpot 5410 version 0.3.4.1-4 and under there exists a stored XSS vulnerability.

    MediumCVSS 6.1No exploitEPSS 1%

    airspan · airspot 5410 firmwareAug 8, 2022

  • Airspan AirVelocity 1500 prior to software version 15.18.00.2511 is vulnerable to injection leading to XSS in the SNMP community field in th

    MediumCVSS 6.1No exploitEPSS 0%

    airspan · airvelocity 1500 firmwareAug 15, 2022