Skip to content
Noroxi

IP-COM records

21 published records for vendor ip-com.

All records

21 records
  • IP-COM M50 V15.11.0.33(10768) was discovered to contain a command injection vulnerability via the hostname parameter in the formSetNetCheckT

    CriticalCVSS 9.8No exploitEPSS 20%

    ip-com · m50 firmwareDec 23, 2022

  • IP-COM EW9 V15.11.0.14(9732) was discovered to contain a command injection vulnerability in the cmd_get_ping_output function.

    CriticalCVSS 9.8No exploitEPSS 5%

    ip-com · ew9 firmwareDec 13, 2022

  • IP-COM EW9 V15.11.0.14(9732) was discovered to contain a command injection vulnerability in the formSetDebugCfg function.

    CriticalCVSS 9.8No exploitEPSS 5%

    ip-com · ew9 firmwareOct 27, 2022

  • IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple command injection vulnerabilities via the pEnable, pLevel, and pModule para

    CriticalCVSS 9.8No exploitEPSS 4%

    ip-com · m50 firmwareDec 23, 2022

  • IP-COM M50 V15.11.0.33(10768) was discovered to contain a command injection vulnerability via the usbPartitionName parameter in the formSetU

    CriticalCVSS 9.8No exploitEPSS 4%

    ip-com · m50 firmwareDec 23, 2022

  • IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the sPortMapIndex parameter in the formDelPortMapping function

    CriticalCVSS 9.8No exploitEPSS 1%

    ip-com · m50 firmwareDec 23, 2022

  • IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffer overflows via the pEnable, pLevel, and pModule parameters in the for

    CriticalCVSS 9.8No exploitEPSS 1%

    ip-com · m50 firmwareDec 23, 2022

  • IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the rules parameter in the formAddDnsForward function.

    CriticalCVSS 9.8No exploitEPSS 1%

    ip-com · m50 firmwareDec 23, 2022

  • IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the indexSet parameter in the formQOSRuleDel function.

    CriticalCVSS 9.8No exploitEPSS 1%

    ip-com · m50 firmwareDec 23, 2022

  • IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffer overflows via the pLanPortRange and pWanPortRange parameters in the

    CriticalCVSS 9.8No exploitEPSS 1%

    ip-com · m50 firmwareDec 23, 2022

  • IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the indexSet parameter in the formIPMacBindDel function.

    CriticalCVSS 9.8No exploitEPSS 1%

    ip-com · m50 firmwareDec 23, 2022

  • IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the gotoUrl parameter in the formPortalAuth function.

    CriticalCVSS 9.8No exploitEPSS 1%

    ip-com · m50 firmwareDec 23, 2022

  • IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the rules parameter in the formIPMacBindAdd function.

    CriticalCVSS 9.8No exploitEPSS 1%

    ip-com · m50 firmwareDec 23, 2022

  • IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the picName parameter in the formDelWewifiPic function.

    CriticalCVSS 9.8No exploitEPSS 1%

    ip-com · m50 firmwareDec 23, 2022

  • IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffer overflows via the ip, mac, and remark parameters in the formIPMacBin

    CriticalCVSS 9.8No exploitEPSS 1%

    ip-com · m50 firmwareDec 23, 2022

  • IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the hostname parameter in the formSetNetCheckTools function.

    CriticalCVSS 9.8No exploitEPSS 1%

    ip-com · m50 firmwareDec 23, 2022

  • IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the rules parameter in the formAddDnsHijack function.

    CriticalCVSS 9.8No exploitEPSS 1%

    ip-com · m50 firmwareDec 23, 2022

  • CVE-2026-2017
    36Monitor

    IP-COM W30AP POST Request wx3auth R7WebsSecurityHandler stack-based overflow

    HighCVSS 8.9No exploitEPSS 5%

    ip-com · w30ap firmwareFeb 6, 2026

  • IP-COM EW9 V15.11.0.14(9732) was discovered to contain a buffer overflow in the formSetDebugCfg function.

    HighCVSS 7.5No exploitEPSS 1%

    ip-com · ew9 firmwareOct 27, 2022

  • IP-COM EW9 V15.11.0.14(9732) allows unauthenticated attackers to access sensitive information via the checkLoginUser, ate, telnet, version,

    HighCVSS 7.5No exploitEPSS 1%

    ip-com · ew9 firmwareOct 27, 2022

  • An access control issue in the password reset page of IP-COM EW9 V15.11.0.14(9732) allows unauthenticated attackers to arbitrarily change th

    HighCVSS 7.5No exploitEPSS 1%

    ip-com · ew9 firmwareOct 27, 2022