planex records
14 published records for vendor planex.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-352 Cross-Site Request Forgery (CSRF)2
- CWE-798 Use of Hard-coded Credentials2
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-668 Exposure of Resource to Wrong Sphere1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
14 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
42Plan | CVE-2013-6026No exploit | The web interface on D-Link DIR-100, DIR-120, DI-624S, DI-524UP, DI-604S, DI-604UP, DI-604+, and TM-G5240 routers; Planex BRL-04R, BRL-04UR,planex · brl-04cw · CWE-264 | Critical10.0 | — | 7.7% | Oct 19, 2013 |
40Plan | CVE-2017-12574No exploit | An issue was discovered on PLANEX CS-W50HD devices with firmware before 030720.planex · cs-w50hd firmware · CWE-798 | Critical9.8 | — | 1.8% | Aug 24, 2018 |
39Monitor | CVE-2017-12577No exploit | An issue was discovered on the PLANEX CS-QR20 1.30.planex · cs-qr20 firmware · CWE-798 | Critical9.8 | — | 1.5% | Aug 24, 2018 |
36Monitor | CVE-2017-12573No exploit | An issue was discovered on PLANEX CS-W50HD devices with firmware before 030720.planex · cs-w50hd firmware | High8.8 | — | 3.1% | Aug 24, 2018 |
35Monitor | CVE-2024-30220No exploit | Command injection vulnerability in PLANEX COMMUNICATIONS wireless LAN routers allows a network-adjacent unauthenticated attacker to execute planex · mzk-mf300n firmware · CWE-77 | High8.8 | — | 1.0% | Apr 15, 2024 |
35Monitor | CVE-2023-22375No exploit | Cross-site request forgery (CSRF) vulnerability in Wired/Wireless LAN Pan/Tilt Network Camera CS-WMV02G all versions allows a remote unautheplanex · cs-wmv02g firmware · CWE-352 | High8.8 | — | 0.4% | Feb 13, 2023 |
29Monitor | CVE-2017-12576No exploit | An issue was discovered on the PLANEX CS-QR20 1.30.planex · cs-qr20 firmware · CWE-668 | High7.2 | — | 2.2% | Aug 24, 2018 |
29Monitor | CVE-2021-37289No exploit | Insecure Permissions in administration interface in Planex MZK-DP150N 1.42 and 1.43 allows attackers to execute system command as root via eplanex · mzk-dp150n firmware · CWE-276 | High7.2 | — | 1.7% | Aug 22, 2022 |
27Monitor | CVE-2022-38399No exploit | Missing protection mechanism for alternate hardware interface in SmaCam CS-QR10 all versions and SmaCam Night Vision CS-QR20 all versions alplanex · cs-qr20 firmware · CWE-287 | Medium6.8 | — | 0.4% | Sep 8, 2022 |
27Monitor | CVE-2024-30219No exploit | Active debug code vulnerability exists in PLANEX COMMUNICATIONS wireless LAN routers.planex · mzk-mf300n firmware · CWE-489 | Medium6.8 | — | 0.3% | Apr 15, 2024 |
26Monitor | CVE-2024-45372No exploit | MZK-DP300N firmware versions 1.04 and earlier contains a cross-site request forger vulnerability.planex · mzk-dp300n firmware · CWE-352 | Medium6.5 | — | 0.2% | Sep 26, 2024 |
24Monitor | CVE-2023-22376No exploit | Reflected cross-site scripting vulnerability in Wired/Wireless LAN Pan/Tilt Network Camera CS-WMV02G all versions allows a remote unauthentiplanex · cs-wmv02g firmware · CWE-79 | Medium6.1 | — | 0.5% | Feb 13, 2023 |
24Monitor | CVE-2024-45836No exploit | Cross-site scripting vulnerability exists in the web management page of PLANEX COMMUNICATIONS network cameras.planex · cs-qr10 firmware · CWE-79 | Medium6.1 | — | 0.3% | Sep 26, 2024 |
20Monitor | CVE-2023-22370No exploit | Stored cross-site scripting vulnerability in Wired/Wireless LAN Pan/Tilt Network Camera CS-WMV02G all versions allows a network-adjacent autplanex · cs-wmv02g · CWE-79 | Medium5.2 | — | 0.3% | Feb 13, 2023 |
- CVE-2013-602642Plan
The web interface on D-Link DIR-100, DIR-120, DI-624S, DI-524UP, DI-604S, DI-604UP, DI-604+, and TM-G5240 routers; Planex BRL-04R, BRL-04UR,
CriticalCVSS 10.0No exploitEPSS 8%planex · brl-04cwOct 19, 2013
- CVE-2017-1257440Plan
An issue was discovered on PLANEX CS-W50HD devices with firmware before 030720.
CriticalCVSS 9.8No exploitEPSS 2%planex · cs-w50hd firmwareAug 24, 2018
- CVE-2017-1257739Monitor
An issue was discovered on the PLANEX CS-QR20 1.30.
CriticalCVSS 9.8No exploitEPSS 1%planex · cs-qr20 firmwareAug 24, 2018
- CVE-2017-1257336Monitor
An issue was discovered on PLANEX CS-W50HD devices with firmware before 030720.
HighCVSS 8.8No exploitEPSS 3%planex · cs-w50hd firmwareAug 24, 2018
- CVE-2024-3022035Monitor
Command injection vulnerability in PLANEX COMMUNICATIONS wireless LAN routers allows a network-adjacent unauthenticated attacker to execute
HighCVSS 8.8No exploitEPSS 1%planex · mzk-mf300n firmwareApr 15, 2024
- CVE-2023-2237535Monitor
Cross-site request forgery (CSRF) vulnerability in Wired/Wireless LAN Pan/Tilt Network Camera CS-WMV02G all versions allows a remote unauthe
HighCVSS 8.8No exploitEPSS 0%planex · cs-wmv02g firmwareFeb 13, 2023
- CVE-2017-1257629Monitor
An issue was discovered on the PLANEX CS-QR20 1.30.
HighCVSS 7.2No exploitEPSS 2%planex · cs-qr20 firmwareAug 24, 2018
- CVE-2021-3728929Monitor
Insecure Permissions in administration interface in Planex MZK-DP150N 1.42 and 1.43 allows attackers to execute system command as root via e
HighCVSS 7.2No exploitEPSS 2%planex · mzk-dp150n firmwareAug 22, 2022
- CVE-2022-3839927Monitor
Missing protection mechanism for alternate hardware interface in SmaCam CS-QR10 all versions and SmaCam Night Vision CS-QR20 all versions al
MediumCVSS 6.8No exploitEPSS 0%planex · cs-qr20 firmwareSep 8, 2022
- CVE-2024-3021927Monitor
Active debug code vulnerability exists in PLANEX COMMUNICATIONS wireless LAN routers.
MediumCVSS 6.8No exploitEPSS 0%planex · mzk-mf300n firmwareApr 15, 2024
- CVE-2024-4537226Monitor
MZK-DP300N firmware versions 1.04 and earlier contains a cross-site request forger vulnerability.
MediumCVSS 6.5No exploitEPSS 0%planex · mzk-dp300n firmwareSep 26, 2024
- CVE-2023-2237624Monitor
Reflected cross-site scripting vulnerability in Wired/Wireless LAN Pan/Tilt Network Camera CS-WMV02G all versions allows a remote unauthenti
MediumCVSS 6.1No exploitEPSS 1%planex · cs-wmv02g firmwareFeb 13, 2023
- CVE-2024-4583624Monitor
Cross-site scripting vulnerability exists in the web management page of PLANEX COMMUNICATIONS network cameras.
MediumCVSS 6.1No exploitEPSS 0%planex · cs-qr10 firmwareSep 26, 2024
- CVE-2023-2237020Monitor
Stored cross-site scripting vulnerability in Wired/Wireless LAN Pan/Tilt Network Camera CS-WMV02G all versions allows a network-adjacent aut
MediumCVSS 5.2No exploitEPSS 0%planex · cs-wmv02gFeb 13, 2023