swisscom records
9 published records for vendor swisscom.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-427 Uncontrolled Search Path Element2
- CWE-20 Improper Input Validation1
- CWE-319 Cleartext Transmission of Sensitive Information1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
- CWE-787 Out-of-bounds Write1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
9 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
32Monitor | CVE-2020-16134No exploit | An issue was discovered on Swisscom Internet Box 2, Internet Box Standard, Internet Box Plus prior to 10.04.38, Internet Box 3 prior to 11.0swisscom · internet-box 2 firmware | High8.0 | — | 0.8% | Aug 4, 2020 |
31Monitor | CVE-2019-19942No exploit | Missing output sanitation in Swisscom Centro Grande Centro Grande before 6.16.12, Centro Business 1.0 (ADB) before 7.10.18, and Centro Businswisscom · centro grande firmware · CWE-20 | High7.5 | — | 1.7% | Mar 16, 2020 |
31Monitor | CVE-2018-6766No exploit | Swisscom TVMediaHelper 1.1.0.50 contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on tswisscom · tvmediahelper · CWE-427 | High7.8 | — | 0.7% | Mar 27, 2018 |
31Monitor | CVE-2018-6765No exploit | Swisscom MySwisscomAssistant 2.17.1.1065 contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary swisscom · myswisscomassistant · CWE-427 | High7.8 | — | 0.7% | Mar 27, 2018 |
30Monitor | CVE-2015-1188No exploit | The certificate verification functions in the HNDS service in Swisscom Centro Grande (ADB) DSL routers with firmware before 6.14.00 allows rswisscom · centro grande firmware | High7.5 | — | 0.9% | May 20, 2015 |
30Monitor | CVE-2018-16596No exploit | A stack-based buffer overflow in the LAN UPnP service running on UDP port 1900 of Swisscom Internet-Box (2, Standard, and Plus) prior to v09swisscom · internet-box standard firmware · CWE-787 | High7.5 | — | 0.7% | Dec 17, 2018 |
29Monitor | CVE-2019-19940No exploit | Incorrect input sanitation in text-oriented user interfaces (telnet, ssh) in Swisscom Centro Grande before 6.16.12 allows remote authenticatswisscom · centro grande firmware · CWE-78 | High7.2 | — | 4.9% | Mar 16, 2020 |
26Monitor | CVE-2018-16225No exploit | The QBee MultiSensor Camera through 4.16.4 accepts unencrypted network traffic from clients (such as the QBee Cam application through 1.0.5 qbeecam · qbee multi-sensor camera firmware · CWE-319 | Medium6.5 | — | 0.6% | Sep 18, 2018 |
21Monitor | CVE-2019-19941No exploit | Missing hostname validation in Swisscom Centro Grande before 6.16.12 allows a remote attacker to inject its local IP address as a domain entswisscom · centro grande firmware · CWE-79 | Medium5.4 | — | 0.7% | Mar 16, 2020 |
- CVE-2020-1613432Monitor
An issue was discovered on Swisscom Internet Box 2, Internet Box Standard, Internet Box Plus prior to 10.04.38, Internet Box 3 prior to 11.0
HighCVSS 8.0No exploitEPSS 1%swisscom · internet-box 2 firmwareAug 4, 2020
- CVE-2019-1994231Monitor
Missing output sanitation in Swisscom Centro Grande Centro Grande before 6.16.12, Centro Business 1.0 (ADB) before 7.10.18, and Centro Busin
HighCVSS 7.5No exploitEPSS 2%swisscom · centro grande firmwareMar 16, 2020
- CVE-2018-676631Monitor
Swisscom TVMediaHelper 1.1.0.50 contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on t
HighCVSS 7.8No exploitEPSS 1%swisscom · tvmediahelperMar 27, 2018
- CVE-2018-676531Monitor
Swisscom MySwisscomAssistant 2.17.1.1065 contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary
HighCVSS 7.8No exploitEPSS 1%swisscom · myswisscomassistantMar 27, 2018
- CVE-2015-118830Monitor
The certificate verification functions in the HNDS service in Swisscom Centro Grande (ADB) DSL routers with firmware before 6.14.00 allows r
HighCVSS 7.5No exploitEPSS 1%swisscom · centro grande firmwareMay 20, 2015
- CVE-2018-1659630Monitor
A stack-based buffer overflow in the LAN UPnP service running on UDP port 1900 of Swisscom Internet-Box (2, Standard, and Plus) prior to v09
HighCVSS 7.5No exploitEPSS 1%swisscom · internet-box standard firmwareDec 17, 2018
- CVE-2019-1994029Monitor
Incorrect input sanitation in text-oriented user interfaces (telnet, ssh) in Swisscom Centro Grande before 6.16.12 allows remote authenticat
HighCVSS 7.2No exploitEPSS 5%swisscom · centro grande firmwareMar 16, 2020
- CVE-2018-1622526Monitor
The QBee MultiSensor Camera through 4.16.4 accepts unencrypted network traffic from clients (such as the QBee Cam application through 1.0.5
MediumCVSS 6.5No exploitEPSS 1%qbeecam · qbee multi-sensor camera firmwareSep 18, 2018
- CVE-2019-1994121Monitor
Missing hostname validation in Swisscom Centro Grande before 6.16.12 allows a remote attacker to inject its local IP address as a domain ent
MediumCVSS 5.4No exploitEPSS 1%swisscom · centro grande firmwareMar 16, 2020