Skip to content
Noroxi

oringnet records

8 published records for vendor oringnet.

All records

8 records
  • Remote Command Execution via SNMP

    CriticalCVSS 9.3No exploitEPSS 17%

    oringnet · iap-420 firmwareDec 10, 2024

  • Missing input validation and OS command integration of the input in the ORing IAP-420 web-interface allows authenticated command injection.T

    HighCVSS 8.7No exploitEPSS 23%

    oringnet · iap-420 firmwareMay 28, 2024

  • CVE-2022-3203
    39Monitor

    ORing net IAP-420(+) Hidden Functionality

    CriticalCVSS 9.8No exploitEPSS 1%

    oringnet · iap-420\+ firmwareOct 21, 2022

  • Authenticated Command Injection

    HighCVSS 8.7No exploitEPSS 12%

    oringnet · iap-420 firmwareDec 10, 2024

  • CVE-2024-5410
    37Monitor

    Stored Cross-Site Scripting

    HighCVSS 8.3No exploitEPSS 14%

    oringnet · iap-420 firmwareMay 28, 2024

  • Reflected Cross-Site Scripting

    HighCVSS 7.1No exploitEPSS 0%

    oringnet · iap-420 firmwareDec 10, 2024

  • Stored Cross-Site Scripting

    HighCVSS 7.1No exploitEPSS 0%

    oringnet · iap-420 firmwareDec 10, 2024

  • Improper check of password character lenght in ORing IAP-420 allows a forced deadlock.

    MediumCVSS 6.9No exploitEPSS 0%

    oringnet · iap-420 firmwareDec 10, 2024