fastweb records
6 published records for vendor fastweb.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-352 Cross-Site Request Forgery (CSRF)2
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')2
- CWE-287 Improper Authentication1
- CWE-787 Out-of-bounds Write1
The weakness classes this vendor ships most often: where to look.
CWEAll records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2019-12489Proof of concept | An issue was discovered on Fastweb Askey RTV1907VW 0.00.81_FW_200_Askey 2018-10-02 18:08:18 devices.fastweb · askey rtv1907vw firmware · CWE-78 | Critical9.8 | — | 6.2% | Nov 26, 2019 |
40Plan | CVE-2018-20122No exploit | The web interface on FASTGate Fastweb devices with firmware through 0.00.47_FW_200_Askey 2017-05-17 (software through 1.0.1b) exposed a CGI fastweb · fastgate firmware · CWE-78 | Critical9.8 | — | 4.8% | Feb 21, 2019 |
36Monitor | CVE-2018-6023Proof of concept | Fastweb FASTgate 0.00.47 devices are vulnerable to CSRF, with impacts including Wi-Fi password changing, Guest Wi-Fi activating, etc.fastweb · fastgate firmware · CWE-352 | High8.8 | — | 2.3% | May 11, 2018 |
35Monitor | CVE-2020-13620No exploit | Fastweb FASTGate GPON FGA2130FWB devices through 2020-05-26 allow CSRF via the router administration web panel, leading to an attacker's abifastweb · fastgate gpon fga2130fwb firmware · CWE-352 | High8.8 | — | 0.5% | Nov 24, 2020 |
31Monitor | CVE-2022-30114Proof of concept | A heap-based buffer overflow in a network service in Fastweb FASTGate MediaAccess FGA2130FWB, firmware version 18.3.n.0482_FW_230_FGA2130, afastweb · fastgate vdsl2 dga4131fwb firmware · CWE-787 | High7.5 | — | 2.4% | May 19, 2023 |
30Monitor | CVE-2019-18661No exploit | Fastweb FASTGate 1.0.1b devices allow partial authentication bypass by changing a certain check_pwd return value from 0 to 1.fastweb · fastgate firmware · CWE-287 | High7.5 | — | 1.5% | Nov 1, 2019 |
- CVE-2019-1248941Plan
An issue was discovered on Fastweb Askey RTV1907VW 0.00.81_FW_200_Askey 2018-10-02 18:08:18 devices.
CriticalCVSS 9.8Proof of conceptEPSS 6%fastweb · askey rtv1907vw firmwareNov 26, 2019
- CVE-2018-2012240Plan
The web interface on FASTGate Fastweb devices with firmware through 0.00.47_FW_200_Askey 2017-05-17 (software through 1.0.1b) exposed a CGI
CriticalCVSS 9.8No exploitEPSS 5%fastweb · fastgate firmwareFeb 21, 2019
- CVE-2018-602336Monitor
Fastweb FASTgate 0.00.47 devices are vulnerable to CSRF, with impacts including Wi-Fi password changing, Guest Wi-Fi activating, etc.
HighCVSS 8.8Proof of conceptEPSS 2%fastweb · fastgate firmwareMay 11, 2018
- CVE-2020-1362035Monitor
Fastweb FASTGate GPON FGA2130FWB devices through 2020-05-26 allow CSRF via the router administration web panel, leading to an attacker's abi
HighCVSS 8.8No exploitEPSS 1%fastweb · fastgate gpon fga2130fwb firmwareNov 24, 2020
- CVE-2022-3011431Monitor
A heap-based buffer overflow in a network service in Fastweb FASTGate MediaAccess FGA2130FWB, firmware version 18.3.n.0482_FW_230_FGA2130, a
HighCVSS 7.5Proof of conceptEPSS 2%fastweb · fastgate vdsl2 dga4131fwb firmwareMay 19, 2023
- CVE-2019-1866130Monitor
Fastweb FASTGate 1.0.1b devices allow partial authentication bypass by changing a certain check_pwd return value from 0 to 1.
HighCVSS 7.5No exploitEPSS 2%fastweb · fastgate firmwareNov 1, 2019