Записи abus
14 опубликованных записей вендора abus.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-287 Improper Authentication2
- CWE-319 Cleartext Transmission of Sensitive Information2
- CWE-310 Cryptographic Issues2
- CWE-330 Use of Insufficiently Random Values1
- CWE-59 Improper Link Resolution Before File Access ('Link Following')1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
14 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
46В плане | CVE-2018-17879Эксплойта нет | An issue was discovered on certain ABUS TVIP cameras.abus · tvip 10000 firmware · CWE-78 | Критическая9,8 | — | 21,9 % | 26 окт. 2023 г. |
40В плане | CVE-2023-26609Proof of concept | ABUS TVIP 20000-21150 devices allows remote attackers to execute arbitrary code via shell metacharacters in the /cgi-bin/mft/wireless_mft apabus · tvip 20000-21150 firmware | Высокая7,2 | — | 38,7 % | 26 февр. 2023 г. |
40В плане | CVE-2018-17558Эксплойта нет | Hardcoded manufacturer credentials and an OS command injection vulnerability in the /cgi-bin/mft/ directory on ABUS TVIP TVIP20050 LM.1.6.18abus · tvip 10000 firmware · CWE-798 | Критическая9,8 | — | 2,5 % | 26 окт. 2023 г. |
40В плане | CVE-2019-9863Эксплойта нет | Due to the use of an insecure algorithm for rolling codes in the ABUS Secvest wireless alarm system FUAA50000 3.01.01 and its remote controlabus · secvest wireless alarm system fuaa50000 firmware · CWE-330 | Критическая9,8 | — | 2,1 % | 27 мар. 2019 г. |
39Наблюдать | CVE-2018-17878Эксплойта нет | Buffer Overflow vulnerability in certain ABUS TVIP cameras allows attackers to gain control of the program via crafted string sent to sprintabus · tvip 10000 firmware · CWE-120 | Критическая9,8 | — | 0,8 % | 26 окт. 2023 г. |
37Наблюдать | CVE-2020-14158Эксплойта нет | The ABUS Secvest FUMO50110 hybrid module does not have any security mechanism that ensures confidentiality or integrity of RF packets that aabus · secvest hybrid fumo50110 firmware · CWE-287 | Критическая9,1 | — | 1,8 % | 30 июл. 2020 г. |
35Наблюдать | CVE-2018-16739Эксплойта нет | An issue was discovered on certain ABUS TVIP devices.abus · tvip 10000 firmware · CWE-22 | Высокая8,8 | — | 1,0 % | 26 окт. 2023 г. |
32Наблюдать | CVE-2019-9861Эксплойта нет | Due to the use of an insecure RFID technology (MIFARE Classic), ABUS proximity chip keys (RFID tokens) of the ABUS Secvest FUAA50000 wirelesabus · secvest wireless alarm system fuaa50000 firmware · CWE-310 | Высокая8,1 | — | 1,6 % | 14 мая 2019 г. |
32Наблюдать | CVE-2020-14157Эксплойта нет | The wireless-communication feature of the ABUS Secvest FUBE50001 device does not encrypt sensitive data such as PIN codes or IDs of used proabus · secvest wireless control fube50001 firmware · CWE-319 | Высокая8,1 | — | 0,8 % | 17 июн. 2020 г. |
31Наблюдать | CVE-2019-14261Эксплойта нет | An issue was discovered on ABUS Secvest FUAA50000 3.01.01 devices.abus · secvest wireless alarm system fuaa50000 firmware · CWE-310 | Высокая7,5 | — | 2,5 % | 3 сент. 2019 г. |
30Наблюдать | CVE-2020-28973Эксплойта нет | The ABUS Secvest wireless alarm system FUAA50000 (v3.01.17) fails to properly authenticate some requests to its built-in HTTPS interface.abus · secvest wireless alarm system fuaa50000 firmware · CWE-287 | Высокая7,5 | — | 1,0 % | 21 апр. 2021 г. |
30Наблюдать | CVE-2018-17559Эксплойта нет | Due to incorrect access control, unauthenticated remote attackers can view the /video.mjpg video stream of certain ABUS TVIP cameras.abus · tvip 10000 firmware · CWE-59 | Высокая7,5 | — | 0,9 % | 26 окт. 2023 г. |
30Наблюдать | CVE-2019-9860Эксплойта нет | Due to unencrypted signal communication and predictability of rolling codes, an attacker can "desynchronize" an ABUS Secvest wireless remoteabus · secvest wireless alarm system fuaa50000 firmware · CWE-319 | Высокая7,5 | — | 0,8 % | 27 мар. 2019 г. |
26Наблюдать | CVE-2019-9862Эксплойта нет | An issue was discovered on ABUS Secvest wireless alarm system FUAA50000 3.01.01 in conjunction with Secvest remote control FUBE50014 or FUBEabus · secvest wireless alarm system fuaa50000 firmware · CWE-311 | Средняя6,5 | — | 0,6 % | 27 мар. 2019 г. |
- CVE-2018-1787946В плане
An issue was discovered on certain ABUS TVIP cameras.
КритическаяCVSS 9,8Эксплойта нетEPSS 22 %abus · tvip 10000 firmware26 окт. 2023 г.
- CVE-2023-2660940В плане
ABUS TVIP 20000-21150 devices allows remote attackers to execute arbitrary code via shell metacharacters in the /cgi-bin/mft/wireless_mft ap
ВысокаяCVSS 7,2Proof of conceptEPSS 39 %abus · tvip 20000-21150 firmware26 февр. 2023 г.
- CVE-2018-1755840В плане
Hardcoded manufacturer credentials and an OS command injection vulnerability in the /cgi-bin/mft/ directory on ABUS TVIP TVIP20050 LM.1.6.18
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %abus · tvip 10000 firmware26 окт. 2023 г.
- CVE-2019-986340В плане
Due to the use of an insecure algorithm for rolling codes in the ABUS Secvest wireless alarm system FUAA50000 3.01.01 and its remote control
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %abus · secvest wireless alarm system fuaa50000 firmware27 мар. 2019 г.
- CVE-2018-1787839Наблюдать
Buffer Overflow vulnerability in certain ABUS TVIP cameras allows attackers to gain control of the program via crafted string sent to sprint
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %abus · tvip 10000 firmware26 окт. 2023 г.
- CVE-2020-1415837Наблюдать
The ABUS Secvest FUMO50110 hybrid module does not have any security mechanism that ensures confidentiality or integrity of RF packets that a
КритическаяCVSS 9,1Эксплойта нетEPSS 2 %abus · secvest hybrid fumo50110 firmware30 июл. 2020 г.
- CVE-2018-1673935Наблюдать
An issue was discovered on certain ABUS TVIP devices.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %abus · tvip 10000 firmware26 окт. 2023 г.
- CVE-2019-986132Наблюдать
Due to the use of an insecure RFID technology (MIFARE Classic), ABUS proximity chip keys (RFID tokens) of the ABUS Secvest FUAA50000 wireles
ВысокаяCVSS 8,1Эксплойта нетEPSS 2 %abus · secvest wireless alarm system fuaa50000 firmware14 мая 2019 г.
- CVE-2020-1415732Наблюдать
The wireless-communication feature of the ABUS Secvest FUBE50001 device does not encrypt sensitive data such as PIN codes or IDs of used pro
ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %abus · secvest wireless control fube50001 firmware17 июн. 2020 г.
- CVE-2019-1426131Наблюдать
An issue was discovered on ABUS Secvest FUAA50000 3.01.01 devices.
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %abus · secvest wireless alarm system fuaa50000 firmware3 сент. 2019 г.
- CVE-2020-2897330Наблюдать
The ABUS Secvest wireless alarm system FUAA50000 (v3.01.17) fails to properly authenticate some requests to its built-in HTTPS interface.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %abus · secvest wireless alarm system fuaa50000 firmware21 апр. 2021 г.
- CVE-2018-1755930Наблюдать
Due to incorrect access control, unauthenticated remote attackers can view the /video.mjpg video stream of certain ABUS TVIP cameras.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %abus · tvip 10000 firmware26 окт. 2023 г.
- CVE-2019-986030Наблюдать
Due to unencrypted signal communication and predictability of rolling codes, an attacker can "desynchronize" an ABUS Secvest wireless remote
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %abus · secvest wireless alarm system fuaa50000 firmware27 мар. 2019 г.
- CVE-2019-986226Наблюдать
An issue was discovered on ABUS Secvest wireless alarm system FUAA50000 3.01.01 in conjunction with Secvest remote control FUBE50014 or FUBE
СредняяCVSS 6,5Эксплойта нетEPSS 1 %abus · secvest wireless alarm system fuaa50000 firmware27 мар. 2019 г.