Skip to content
Noroxi

atcom records

7 published records for vendor atcom.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
4
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

7 records
  • A command injection (missing input validation) issue in the remote phonebook configuration URI in the web interface of the Atcom A10W VoIP p

    HighCVSS 8.8No exploitEPSS 4%

    atcom · a10w firmwareJul 22, 2019

  • CVE-2009-5102
    31Monitor

    SQL injection vulnerability in default.asp in ATCOM Netvolution 1.0 ASP allows remote attackers to execute arbitrary SQL commands via the bp

    HighCVSS 7.5Proof of conceptEPSS 2%

    atcom · netvolutionOct 21, 2011

  • CVE-2010-4967
    31Monitor

    SQL injection vulnerability in default.asp in ATCOM Netvolution 2.5.6 allows remote attackers to execute arbitrary SQL commands via the artI

    HighCVSS 7.5Proof of conceptEPSS 2%

    atcom · netvolutionOct 21, 2011

  • CVE-2014-2318
    31Monitor

    SQL injection vulnerability in ATCOM Netvolution 3 allows remote attackers to execute arbitrary SQL commands via the m parameter.

    HighCVSS 7.5No exploitEPSS 2%

    atcom · netvolutionMar 11, 2014

  • CVE-2011-3340
    31Monitor

    SQL injection vulnerability in ATCOM Netvolution 2.5.8 ASP allows remote attackers to execute arbitrary SQL commands via the Referer HTTP he

    HighCVSS 7.5Proof of conceptEPSS 2%

    atcom · netvolutionOct 21, 2011

  • CVE-2009-5103
    18Monitor

    Cross-site scripting (XSS) vulnerability in ATCOM Netvolution 1.0 ASP allows remote attackers to inject arbitrary web script or HTML via the

    MediumCVSS 4.3Proof of conceptEPSS 3%

    atcom · netvolutionOct 21, 2011

  • CVE-2010-4966
    17Monitor

    Cross-site scripting (XSS) vulnerability in default.asp in ATCOM Netvolution allows remote attackers to inject arbitrary web script or HTML

    MediumCVSS 4.3No exploitEPSS 1%

    atcom · netvolutionOct 21, 2011