Записи aztech
8 опубликованных записей вендора aztech.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-287 Improper Authentication2
- CWE-255 Credentials Management Errors1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-522 Insufficiently Protected Credentials1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
8 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
52В плане | CVE-2014-6436Proof of concept | Aztech ADSL DSL5018EN (1T1R), DSL705E, and DSL705EU devices improperly manage sessions, which allows remote attackers to bypass authenticatiaztech · adsl dsl5018en \(1t1r\) firmware · CWE-287 | Критическая9,8 | — | 42,1 % | 12 янв. 2018 г. |
44В плане | CVE-2014-6437Proof of concept | Aztech ADSL DSL5018EN (1T1R), DSL705E, and DSL705EU devices allow remote attackers to obtain sensitive device configuration information via aztech · adsl dsl5018en \(1t1r\) firmware · CWE-200 | Критическая9,8 | — | 15,5 % | 12 янв. 2018 г. |
41В плане | CVE-2008-6554Эксплойта нет | cgi-bin/script in Aztech ADSL2/2+ 4-port router 3.7.0 build 070426 allows remote attackers to execute arbitrary commands via shell metacharaaztech · adsl2\/2\+4-port router · CWE-78 | Критическая10,0 | — | 3,7 % | 30 мар. 2009 г. |
41В плане | CVE-2008-6588Эксплойта нет | Aztech ADSL2/2+ 4-port router has a default "isp" account with a default "isp" password, which allows remote attackers to obtain access if taztech · adsl2\/2\+4-port router · CWE-255 | Критическая10,0 | — | 2,4 % | 3 апр. 2009 г. |
39Наблюдать | CVE-2022-45599Proof of concept | Aztech WMB250AC Mesh Routers Firmware Version 016 2020 is vulnerable to PHP Type Juggling in file /var/www/login.php, allows attackers to gaaztech · wmb250ac firmware · CWE-522 | Критическая9,8 | — | 1,0 % | 22 февр. 2023 г. |
38Наблюдать | CVE-2007-4733Эксплойта нет | The Aztech DSL600EU router, when WAN access to the web interface is disabled, does not properly block inbound traffic on TCP port 80, which aztech · dsl 600eu router · CWE-264 | Критическая9,3 | — | 1,8 % | 6 сент. 2007 г. |
36Наблюдать | CVE-2022-45600Proof of concept | Aztech WMB250AC Mesh Routers Firmware Version 016 2020 devices improperly manage sessions, which allows remote attackers to bypass authenticaztech · wmb250ac firmware · CWE-77 | Высокая8,8 | — | 2,3 % | 22 февр. 2023 г. |
34Наблюдать | CVE-2014-6435Proof of concept | cgi-bin/AZ_Retrain.cgi in Aztech ADSL DSL5018EN (1T1R), DSL705E, and DSL705EU devices does not check for authentication, which allows remoteaztech · adsl dsl5018en \(1t1r\) firmware · CWE-287 | Высокая7,5 | — | 12,6 % | 12 янв. 2018 г. |
- CVE-2014-643652В плане
Aztech ADSL DSL5018EN (1T1R), DSL705E, and DSL705EU devices improperly manage sessions, which allows remote attackers to bypass authenticati
КритическаяCVSS 9,8Proof of conceptEPSS 42 %aztech · adsl dsl5018en \(1t1r\) firmware12 янв. 2018 г.
- CVE-2014-643744В плане
Aztech ADSL DSL5018EN (1T1R), DSL705E, and DSL705EU devices allow remote attackers to obtain sensitive device configuration information via
КритическаяCVSS 9,8Proof of conceptEPSS 16 %aztech · adsl dsl5018en \(1t1r\) firmware12 янв. 2018 г.
- CVE-2008-655441В плане
cgi-bin/script in Aztech ADSL2/2+ 4-port router 3.7.0 build 070426 allows remote attackers to execute arbitrary commands via shell metachara
КритическаяCVSS 10,0Эксплойта нетEPSS 4 %aztech · adsl2\/2\+4-port router30 мар. 2009 г.
- CVE-2008-658841В плане
Aztech ADSL2/2+ 4-port router has a default "isp" account with a default "isp" password, which allows remote attackers to obtain access if t
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %aztech · adsl2\/2\+4-port router3 апр. 2009 г.
- CVE-2022-4559939Наблюдать
Aztech WMB250AC Mesh Routers Firmware Version 016 2020 is vulnerable to PHP Type Juggling in file /var/www/login.php, allows attackers to ga
КритическаяCVSS 9,8Proof of conceptEPSS 1 %aztech · wmb250ac firmware22 февр. 2023 г.
- CVE-2007-473338Наблюдать
The Aztech DSL600EU router, when WAN access to the web interface is disabled, does not properly block inbound traffic on TCP port 80, which
КритическаяCVSS 9,3Эксплойта нетEPSS 2 %aztech · dsl 600eu router6 сент. 2007 г.
- CVE-2022-4560036Наблюдать
Aztech WMB250AC Mesh Routers Firmware Version 016 2020 devices improperly manage sessions, which allows remote attackers to bypass authentic
ВысокаяCVSS 8,8Proof of conceptEPSS 2 %aztech · wmb250ac firmware22 февр. 2023 г.
- CVE-2014-643534Наблюдать
cgi-bin/AZ_Retrain.cgi in Aztech ADSL DSL5018EN (1T1R), DSL705E, and DSL705EU devices does not check for authentication, which allows remote
ВысокаяCVSS 7,5Proof of conceptEPSS 13 %aztech · adsl dsl5018en \(1t1r\) firmware12 янв. 2018 г.