comtech records
6 published records for vendor comtech.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')4
- CWE-284 Improper Access Control1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
30Monitor | CVE-2025-67015No exploit | Incorrect access control in Comtech EF Data CDM-625 / CDM-625A Advanced Satellite Modem with firmware v2.5.1 allows attackers to change the comtech · cdm-625 firmware · CWE-284 | High7.5 | — | 0.4% | Dec 26, 2025 |
29Monitor | CVE-2020-7242No exploit | Comtech Stampede FX-1010 7.4.3 devices allow remote authenticated administrators to achieve remote code execution by navigating to the Diagncomtech · stampede fx-1010 firmware · CWE-78 | High7.2 | — | 4.4% | Jan 20, 2020 |
29Monitor | CVE-2020-7243No exploit | Comtech Stampede FX-1010 7.4.3 devices allow remote authenticated administrators to achieve remote code execution by navigating to the Fetchcomtech · stampede fx-1010 firmware · CWE-78 | High7.2 | — | 4.2% | Jan 20, 2020 |
29Monitor | CVE-2020-7244No exploit | Comtech Stampede FX-1010 7.4.3 devices allow remote authenticated administrators to achieve remote code execution by navigating to the Poll comtech · stampede fx-1010 firmware · CWE-78 | High7.2 | — | 4.2% | Jan 20, 2020 |
29Monitor | CVE-2020-5179No exploit | Comtech Stampede FX-1010 7.4.3 devices allow remote authenticated administrators to execute arbitrary OS commands by navigating to the Diagncomtech · stampede fx-1010 firmware · CWE-78 | High7.2 | — | 2.8% | Jan 2, 2020 |
21Monitor | CVE-2019-17667No exploit | Comtech H8 Heights Remote Gateway 2.5.1 devices allow XSS and HTML injection via the Site Name (aka SiteName) field.comtech · h8 heights remote gateway firmware · CWE-79 | Medium5.4 | — | 0.5% | Oct 17, 2019 |
- CVE-2025-6701530Monitor
Incorrect access control in Comtech EF Data CDM-625 / CDM-625A Advanced Satellite Modem with firmware v2.5.1 allows attackers to change the
HighCVSS 7.5No exploitEPSS 0%comtech · cdm-625 firmwareDec 26, 2025
- CVE-2020-724229Monitor
Comtech Stampede FX-1010 7.4.3 devices allow remote authenticated administrators to achieve remote code execution by navigating to the Diagn
HighCVSS 7.2No exploitEPSS 4%comtech · stampede fx-1010 firmwareJan 20, 2020
- CVE-2020-724329Monitor
Comtech Stampede FX-1010 7.4.3 devices allow remote authenticated administrators to achieve remote code execution by navigating to the Fetch
HighCVSS 7.2No exploitEPSS 4%comtech · stampede fx-1010 firmwareJan 20, 2020
- CVE-2020-724429Monitor
Comtech Stampede FX-1010 7.4.3 devices allow remote authenticated administrators to achieve remote code execution by navigating to the Poll
HighCVSS 7.2No exploitEPSS 4%comtech · stampede fx-1010 firmwareJan 20, 2020
- CVE-2020-517929Monitor
Comtech Stampede FX-1010 7.4.3 devices allow remote authenticated administrators to execute arbitrary OS commands by navigating to the Diagn
HighCVSS 7.2No exploitEPSS 3%comtech · stampede fx-1010 firmwareJan 2, 2020
- CVE-2019-1766721Monitor
Comtech H8 Heights Remote Gateway 2.5.1 devices allow XSS and HTML injection via the Site Name (aka SiteName) field.
MediumCVSS 5.4No exploitEPSS 1%comtech · h8 heights remote gateway firmwareOct 17, 2019