Telstra records
2 published records for vendor telstra.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
44Plan | CVE-2023-43478No exploit | Unauthenticated configuration restore and firmware updatetelstra · arcadyan lh1000 firmware · CWE-434 | Critical9.8 | — | 18.0% | Sep 20, 2023 |
40Plan | CVE-2023-43477No exploit | Post-Auth Command Injection in Telstra Smart Modem Gen 2 (Arcadyan LH1000)telstra · arcadyan lh1000 firmware · CWE-77 | High8.8 | — | 17.7% | Sep 20, 2023 |
- CVE-2023-4347844Plan
Unauthenticated configuration restore and firmware update
CriticalCVSS 9.8No exploitEPSS 18%telstra · arcadyan lh1000 firmwareSep 20, 2023
- CVE-2023-4347740Plan
Post-Auth Command Injection in Telstra Smart Modem Gen 2 (Arcadyan LH1000)
HighCVSS 8.8No exploitEPSS 18%telstra · arcadyan lh1000 firmwareSep 20, 2023