sitecom records
10 published records for vendor sitecom.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-352 Cross-Site Request Forgery (CSRF)2
- CWE-16 Configuration2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-1392 Use of Default Credentials1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
- CWE-98 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
10 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
42Plan | CVE-2011-4502No exploit | The UPnP IGD implementation in Edimax EdiLinux on the Edimax BR-6104K with firmware before 3.25, Edimax 6114Wg, Canyon-Tech CN-WF512 with fiedimax · br-6104k router firmware · CWE-78 | Critical10.0 | — | 5.5% | Nov 22, 2011 |
41Plan | CVE-2011-4501No exploit | The UPnP IGD implementation in Edimax EdiLinux on the Edimax BR-6104K with firmware before 3.25, Edimax 6114Wg, Canyon-Tech CN-WF512 with fiedimax · br-6104k router firmware · CWE-16 | Critical10.0 | — | 4.2% | Nov 22, 2011 |
31Monitor | CVE-2011-4503No exploit | The UPnP IGD implementation in Broadcom Linux on the Sitecom WL-111 allows remote attackers to establish arbitrary port mappings by sending broadcom · broadcom linux · CWE-16 | High7.5 | — | 2.1% | Nov 22, 2011 |
30Monitor | CVE-2006-2560No exploit | Sitecom WL-153 router firmware before 1.38 allows remote attackers to bypass access restrictions and conduct unauthorized operations via a Usitecom · wl-153 router firmware · CWE-264 | High7.5 | — | 1.5% | May 23, 2006 |
27Monitor | CVE-2012-1922Proof of concept | Multiple cross-site request forgery (CSRF) vulnerabilities in Sitecom WLM-2501 allow remote attackers to hijack the authentication of adminisitecom · wlm-2501 · CWE-352 | Medium6.8 | — | 1.4% | Jan 23, 2013 |
27Monitor | CVE-2012-1921Proof of concept | Cross-site request forgery (CSRF) vulnerability in goform/admin/formWlEncrypt in Sitecom WLM-2501 allows remote attackers to hijack the authsitecom · wlm-2501 · CWE-352 | Medium6.8 | — | 1.0% | Aug 26, 2012 |
26Monitor | CVE-2024-40113No exploit | Sitecom WLX-2006 Wall Mount Range Extender N300 v.1.5 and before is vulnerable to Use of Default Credentials.sitecom · wlx-2006 firmware · CWE-1392 | Medium6.5 | — | 0.3% | Jun 2, 2025 |
24Monitor | CVE-2024-40114No exploit | A Cross Site Scripting (XSS) vulnerability in Sitecom WLX-2006 Wall Mount Range Extender N300 v1.5 and before allows an attacker to manipulasitecom · wlx-2006 firmware · CWE-79 | Medium6.1 | — | 0.3% | Jun 2, 2025 |
23Monitor | CVE-2024-40112No exploit | A Local File Inclusion (LFI) vulnerability exists in Sitecom WLX-2006 Wall Mount Range Extender N300 v1.5 and before, which allows an attacksitecom · wlx-2006 firmware · CWE-98 | Medium5.9 | — | 0.5% | Jun 2, 2025 |
18Monitor | CVE-2013-6786No exploit | Cross-site scripting (XSS) vulnerability in Allegro RomPager before 4.51, as used on the ZyXEL P660HW-D1, Huawei MT882, Sitecom WL-174, TP-Lhuawei · mt882 · CWE-79 | Medium4.3 | — | 2.2% | Jan 16, 2014 |
- CVE-2011-450242Plan
The UPnP IGD implementation in Edimax EdiLinux on the Edimax BR-6104K with firmware before 3.25, Edimax 6114Wg, Canyon-Tech CN-WF512 with fi
CriticalCVSS 10.0No exploitEPSS 5%edimax · br-6104k router firmwareNov 22, 2011
- CVE-2011-450141Plan
The UPnP IGD implementation in Edimax EdiLinux on the Edimax BR-6104K with firmware before 3.25, Edimax 6114Wg, Canyon-Tech CN-WF512 with fi
CriticalCVSS 10.0No exploitEPSS 4%edimax · br-6104k router firmwareNov 22, 2011
- CVE-2011-450331Monitor
The UPnP IGD implementation in Broadcom Linux on the Sitecom WL-111 allows remote attackers to establish arbitrary port mappings by sending
HighCVSS 7.5No exploitEPSS 2%broadcom · broadcom linuxNov 22, 2011
- CVE-2006-256030Monitor
Sitecom WL-153 router firmware before 1.38 allows remote attackers to bypass access restrictions and conduct unauthorized operations via a U
HighCVSS 7.5No exploitEPSS 2%sitecom · wl-153 router firmwareMay 23, 2006
- CVE-2012-192227Monitor
Multiple cross-site request forgery (CSRF) vulnerabilities in Sitecom WLM-2501 allow remote attackers to hijack the authentication of admini
MediumCVSS 6.8Proof of conceptEPSS 1%sitecom · wlm-2501Jan 23, 2013
- CVE-2012-192127Monitor
Cross-site request forgery (CSRF) vulnerability in goform/admin/formWlEncrypt in Sitecom WLM-2501 allows remote attackers to hijack the auth
MediumCVSS 6.8Proof of conceptEPSS 1%sitecom · wlm-2501Aug 26, 2012
- CVE-2024-4011326Monitor
Sitecom WLX-2006 Wall Mount Range Extender N300 v.1.5 and before is vulnerable to Use of Default Credentials.
MediumCVSS 6.5No exploitEPSS 0%sitecom · wlx-2006 firmwareJun 2, 2025
- CVE-2024-4011424Monitor
A Cross Site Scripting (XSS) vulnerability in Sitecom WLX-2006 Wall Mount Range Extender N300 v1.5 and before allows an attacker to manipula
MediumCVSS 6.1No exploitEPSS 0%sitecom · wlx-2006 firmwareJun 2, 2025
- CVE-2024-4011223Monitor
A Local File Inclusion (LFI) vulnerability exists in Sitecom WLX-2006 Wall Mount Range Extender N300 v1.5 and before, which allows an attack
MediumCVSS 5.9No exploitEPSS 1%sitecom · wlx-2006 firmwareJun 2, 2025
- CVE-2013-678618Monitor
Cross-site scripting (XSS) vulnerability in Allegro RomPager before 4.51, as used on the ZyXEL P660HW-D1, Huawei MT882, Sitecom WL-174, TP-L
MediumCVSS 4.3No exploitEPSS 2%huawei · mt882Jan 16, 2014