basetech records
6 published records for vendor basetech.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-1188 Initialization of a Resource with an Insecure Default1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-287 Improper Authentication1
- CWE-319 Cleartext Transmission of Sensitive Information1
- CWE-330 Use of Insufficiently Random Values1
- CWE-522 Insufficiently Protected Credentials1
The weakness classes this vendor ships most often: where to look.
CWEAll records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2020-27555No exploit | Use of default credentials for the telnet server in BASETech GE-131 BT-1837836 firmware 20180921 allows remote attackers to execute arbitrarbasetech · ge-131 bt-1837836 firmware · CWE-1188 | Critical9.8 | — | 2.5% | Nov 17, 2020 |
30Monitor | CVE-2020-27553No exploit | In BASETech GE-131 BT-1837836 firmware 20180921, the web-server on the system is configured with the option “DocumentRoot /etc“.basetech · ge-131 bt-1837836 firmware · CWE-22 | High7.5 | — | 1.5% | Nov 17, 2020 |
30Monitor | CVE-2020-27554No exploit | Cleartext Transmission of Sensitive Information vulnerability in BASETech GE-131 BT-1837836 firmware 20180921 exists which could leak sensitbasetech · ge-131 bt-1837836 firmware · CWE-319 | High7.5 | — | 0.7% | Nov 17, 2020 |
26Monitor | CVE-2020-27558No exploit | Use of an undocumented user in BASETech GE-131 BT-1837836 firmware 20180921 allows remote attackers to view the video stream.basetech · ge-131 bt-1837836 firmware · CWE-287 | Medium6.5 | — | 1.1% | Nov 17, 2020 |
22Monitor | CVE-2020-27557No exploit | Unprotected Storage of Credentials vulnerability in BASETech GE-131 BT-1837836 firmware 20180921 allows local users to gain access to the vibasetech · ge-131 bt-1837836 firmware · CWE-522 | Medium5.5 | — | 0.3% | Nov 17, 2020 |
21Monitor | CVE-2020-27556No exploit | A predictable device ID in BASETech GE-131 BT-1837836 firmware 20180921 allows unauthenticated remote attackers to connect to the device.basetech · ge-131 bt-1837836 firmware · CWE-330 | Medium5.3 | — | 1.0% | Nov 17, 2020 |
- CVE-2020-2755540Plan
Use of default credentials for the telnet server in BASETech GE-131 BT-1837836 firmware 20180921 allows remote attackers to execute arbitrar
CriticalCVSS 9.8No exploitEPSS 3%basetech · ge-131 bt-1837836 firmwareNov 17, 2020
- CVE-2020-2755330Monitor
In BASETech GE-131 BT-1837836 firmware 20180921, the web-server on the system is configured with the option “DocumentRoot /etc“.
HighCVSS 7.5No exploitEPSS 2%basetech · ge-131 bt-1837836 firmwareNov 17, 2020
- CVE-2020-2755430Monitor
Cleartext Transmission of Sensitive Information vulnerability in BASETech GE-131 BT-1837836 firmware 20180921 exists which could leak sensit
HighCVSS 7.5No exploitEPSS 1%basetech · ge-131 bt-1837836 firmwareNov 17, 2020
- CVE-2020-2755826Monitor
Use of an undocumented user in BASETech GE-131 BT-1837836 firmware 20180921 allows remote attackers to view the video stream.
MediumCVSS 6.5No exploitEPSS 1%basetech · ge-131 bt-1837836 firmwareNov 17, 2020
- CVE-2020-2755722Monitor
Unprotected Storage of Credentials vulnerability in BASETech GE-131 BT-1837836 firmware 20180921 allows local users to gain access to the vi
MediumCVSS 5.5No exploitEPSS 0%basetech · ge-131 bt-1837836 firmwareNov 17, 2020
- CVE-2020-2755621Monitor
A predictable device ID in BASETech GE-131 BT-1837836 firmware 20180921 allows unauthenticated remote attackers to connect to the device.
MediumCVSS 5.3No exploitEPSS 1%basetech · ge-131 bt-1837836 firmwareNov 17, 2020