Skip to content
Noroxi

Thecus records

5 published records for vendor thecus.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
3
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

5 records
  • The Thecus NAS server N8800 with firmware 5.03.01 allows remote attackers to execute arbitrary commands via a get_userid action with shell m

    CriticalCVSS 10.0No exploitEPSS 4%

    thecus · n8800 nas server firmwareJan 24, 2014

  • Thecus 4800Eco was discovered to contain a command injection vulnerability via the username parameter in /adm/setmain.php.

    CriticalCVSS 9.8No exploitEPSS 3%

    thecus · n4800eco firmwareMay 19, 2022

  • CVE-2013-5669
    32Monitor

    The Thecus NAS server N8800 with firmware 5.03.01 uses cleartext credentials for administrative authentication, which allows remote attacker

    HighCVSS 7.8No exploitEPSS 2%

    thecus · n8800 nas server firmwareJan 24, 2014

  • CVE-2013-5668
    32Monitor

    The ADS/NT Support page on the Thecus NAS server N8800 with firmware 5.03.01 allows remote attackers to discover the administrator credentia

    HighCVSS 7.8No exploitEPSS 2%

    thecus · n8800 nas server firmwareJan 24, 2014

  • CVE-2008-0804
    28Monitor

    PHP remote file inclusion vulnerability in usrgetform.html in Thecus N5200Pro NAS Server allows remote attackers to execute arbitrary PHP co

    MediumCVSS 6.8Proof of conceptEPSS 2%

    thecus · n5200pro nas server control panelFeb 18, 2008