ee records
5 published records for vendor ee.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-732 Incorrect Permission Assignment for Critical Resource1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-798 Use of Hard-coded Credentials1
The weakness classes this vendor ships most often: where to look.
CWEAll records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2017-14269No exploit | EE 4GEE WiFi MBB (before EE60_00_05.00_31) devices allow remote attackers to obtain sensitive information via a JSONP endpoint, as demonstraee · 4gee wifi mbb firmware · CWE-200 | Critical9.8 | — | 1.6% | Sep 11, 2017 |
36Monitor | CVE-2018-10532No exploit | An issue was discovered on EE 4GEE HH70VB-2BE8GB3 HH70_E1_02.00_19 devices.ee · 4gee firmware · CWE-798 | High8.8 | — | 2.4% | Oct 30, 2018 |
35Monitor | CVE-2017-14267No exploit | EE 4GEE WiFi MBB (before EE60_00_05.00_31) devices have CSRF, related to goform/AddNewProfile, goform/setWanDisconnect, goform/setSMSAutoRedee · 4gee wifi mbb firmware · CWE-352 | High8.8 | — | 0.7% | Sep 11, 2017 |
32Monitor | CVE-2018-14327Proof of concept | The installer for the Alcatel OSPREY3_MINI Modem component on EE EE40VB 4G mobile broadband modems with firmware before EE40_00_02.00_45 setee · ee40vb firmware · CWE-732 | High7.8 | — | 4.4% | Sep 26, 2018 |
24Monitor | CVE-2017-14268No exploit | EE 4GEE WiFi MBB (before EE60_00_05.00_31) devices have XSS in the sms_content parameter in a getSMSlist request.ee · 4gee wifi mbb firmware · CWE-79 | Medium6.1 | — | 0.7% | Sep 11, 2017 |
- CVE-2017-1426939Monitor
EE 4GEE WiFi MBB (before EE60_00_05.00_31) devices allow remote attackers to obtain sensitive information via a JSONP endpoint, as demonstra
CriticalCVSS 9.8No exploitEPSS 2%ee · 4gee wifi mbb firmwareSep 11, 2017
- CVE-2018-1053236Monitor
An issue was discovered on EE 4GEE HH70VB-2BE8GB3 HH70_E1_02.00_19 devices.
HighCVSS 8.8No exploitEPSS 2%ee · 4gee firmwareOct 30, 2018
- CVE-2017-1426735Monitor
EE 4GEE WiFi MBB (before EE60_00_05.00_31) devices have CSRF, related to goform/AddNewProfile, goform/setWanDisconnect, goform/setSMSAutoRed
HighCVSS 8.8No exploitEPSS 1%ee · 4gee wifi mbb firmwareSep 11, 2017
- CVE-2018-1432732Monitor
The installer for the Alcatel OSPREY3_MINI Modem component on EE EE40VB 4G mobile broadband modems with firmware before EE40_00_02.00_45 set
HighCVSS 7.8Proof of conceptEPSS 4%ee · ee40vb firmwareSep 26, 2018
- CVE-2017-1426824Monitor
EE 4GEE WiFi MBB (before EE60_00_05.00_31) devices have XSS in the sms_content parameter in a getSMSlist request.
MediumCVSS 6.1No exploitEPSS 1%ee · 4gee wifi mbb firmwareSep 11, 2017