Skip to content
Noroxi

starry records

2 published records for vendor starry.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 19

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

Attack profile

All records

2 records
  • Starry Station (aka Starry Router) sets the Access-Control-Allow-Origin header to "*".

    HighCVSS 8.8No exploitEPSS 3%

    starry · s00111 firmwareJun 10, 2019

  • The HTTP API supported by Starry Station (aka Starry Router) allows brute forcing the PIN setup by the user on the device, and this allows a

    HighCVSS 8.0No exploitEPSS 2%

    starry · s00111 firmwareJun 10, 2019