lancom-systems records
4 published records for vendor lancom-systems.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 25%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-354 Improper Validation of Integrity Check Value1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
51Plan | CVE-2023-48795Proof of concept | The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypasssh · ssh · CWE-354 | Medium5.9 | — | 93.5% | Dec 18, 2023 |
35Monitor | CVE-2021-33903No exploit | In LCOS 10.40 to 10.42.0473-RU3 with SNMPv3 enabled on LANCOM devices, changing the password of the root user via the CLI does not change thlancom-systems · lcos | High8.8 | — | 1.1% | Oct 7, 2021 |
30Monitor | CVE-2021-31538No exploit | LANCOM R&S Unified Firewall (UF) devices running LCOS FX 10.5 allow Relative Path Traversal.lancom-systems · lcos fx · CWE-22 | High7.5 | — | 1.5% | Jun 10, 2021 |
21Monitor | CVE-2020-23055No exploit | ANCOM WLAN Controller (Wireless Series & Hotspot) WLC-1000 & WLC-4006 was discovered to contain multiple cross-site scripting (XSS) vulnerablancom-systems · lcos · CWE-79 | Medium5.4 | — | 0.6% | Oct 22, 2021 |
- CVE-2023-4879551Plan
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypas
MediumCVSS 5.9Proof of conceptEPSS 94%ssh · sshDec 18, 2023
- CVE-2021-3390335Monitor
In LCOS 10.40 to 10.42.0473-RU3 with SNMPv3 enabled on LANCOM devices, changing the password of the root user via the CLI does not change th
HighCVSS 8.8No exploitEPSS 1%lancom-systems · lcosOct 7, 2021
- CVE-2021-3153830Monitor
LANCOM R&S Unified Firewall (UF) devices running LCOS FX 10.5 allow Relative Path Traversal.
HighCVSS 7.5No exploitEPSS 1%lancom-systems · lcos fxJun 10, 2021
- CVE-2020-2305521Monitor
ANCOM WLAN Controller (Wireless Series & Hotspot) WLC-1000 & WLC-4006 was discovered to contain multiple cross-site scripting (XSS) vulnerab
MediumCVSS 5.4No exploitEPSS 1%lancom-systems · lcosOct 22, 2021