starry records
2 published records for vendor starry.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2017-13717No exploit | Starry Station (aka Starry Router) sets the Access-Control-Allow-Origin header to "*".starry · s00111 firmware · CWE-255 | High8.8 | — | 2.6% | Jun 10, 2019 |
33Monitor | CVE-2017-13718No exploit | The HTTP API supported by Starry Station (aka Starry Router) allows brute forcing the PIN setup by the user on the device, and this allows astarry · s00111 firmware · CWE-254 | High8.0 | — | 2.1% | Jun 10, 2019 |
- CVE-2017-1371736Monitor
Starry Station (aka Starry Router) sets the Access-Control-Allow-Origin header to "*".
HighCVSS 8.8No exploitEPSS 3%starry · s00111 firmwareJun 10, 2019
- CVE-2017-1371833Monitor
The HTTP API supported by Starry Station (aka Starry Router) allows brute forcing the PIN setup by the user on the device, and this allows a
HighCVSS 8.0No exploitEPSS 2%starry · s00111 firmwareJun 10, 2019