Записи corega
16 опубликованных записей вендора corega.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-352 Cross-Site Request Forgery (CSRF)2
- CWE-254 7PK - Security Features1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-284 Improper Access Control1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
16 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2015-7792Эксплойта нет | Corega CG-WLBARGS devices allow remote attackers to perform administrative operations via unspecified vectors.corega · cg-wlbargs firmware · CWE-264 | Критическая9,8 | — | 2,8 % | 30 дек. 2015 г. |
35Наблюдать | CVE-2016-7809Эксплойта нет | Cross-site request forgery (CSRF) vulnerability in Corega CG-WLR300NX firmware Ver.corega · cg-wlr300nx firmware · CWE-352 | Высокая8,8 | — | 0,9 % | 9 июн. 2017 г. |
35Наблюдать | CVE-2016-7811Эксплойта нет | Corega CG-WLR300NX firmware Ver.corega · cg-wlr300nx firmware · CWE-284 | Высокая8,8 | — | 0,9 % | 9 июн. 2017 г. |
35Наблюдать | CVE-2017-10852Эксплойта нет | Buffer overflow in Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to execute arbitrary code via unspecified vectors.corega · cg-wgr 1200 firmware · CWE-119 | Высокая8,8 | — | 0,8 % | 9 мар. 2018 г. |
35Наблюдать | CVE-2017-10853Эксплойта нет | Buffer overflow in Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to execute arbitrary commands via unspecified vectors.corega · cg-wgr 1200 firmware · CWE-119 | Высокая8,8 | — | 0,8 % | 9 мар. 2018 г. |
35Наблюдать | CVE-2016-1158Эксплойта нет | Cross-site request forgery (CSRF) vulnerability on Corega CG-WLBARGMH and CG-WLBARGNL devices allows remote attackers to hijack the authenticorega · cg-wlbargmh · CWE-352 | Высокая8,8 | — | 0,6 % | 3 мар. 2016 г. |
35Наблюдать | CVE-2017-10854Эксплойта нет | Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to bypass authentication and change the login password via unspecified vectorcorega · cg-wgr 1200 firmware · CWE-306 | Высокая8,8 | — | 0,6 % | 9 мар. 2018 г. |
32Наблюдать | CVE-2016-4822Эксплойта нет | Corega CG-WLBARGL devices allow remote authenticated users to execute arbitrary commands via unspecified vectors.corega · cg-wlbargl firmware · CWE-77 | Высокая8,0 | — | 1,1 % | 25 июн. 2016 г. |
31Наблюдать | CVE-2016-4823Эксплойта нет | Corega CG-WLBARAGM devices allow remote attackers to cause a denial of service (reboot) via unspecified vectors.corega · cg-wlbargmh | Высокая7,5 | — | 1,9 % | 25 июн. 2016 г. |
27Наблюдать | CVE-2017-10814Эксплойта нет | Buffer overflow in CG-WLR300NM Firmware version 1.90 and earlier allows an attacker to execute arbitrary code via unspecified vectors.corega · wlr 300 nm firmware · CWE-119 | Средняя6,8 | — | 0,8 % | 15 сент. 2017 г. |
27Наблюдать | CVE-2017-10813Эксплойта нет | CG-WLR300NM Firmware version 1.90 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors.corega · wlr 300 nm firmware · CWE-78 | Средняя6,8 | — | 0,7 % | 15 сент. 2017 г. |
24Наблюдать | CVE-2016-7808Эксплойта нет | Cross-site scripting vulnerability in Corega CG-WLBARGMH and CG-WLBARGNL allows remote attackers to inject arbitrary web script or HTML via corega · cg-wlbaragm firmware · CWE-79 | Средняя6,1 | — | 1,2 % | 9 июн. 2017 г. |
23Наблюдать | CVE-2015-7794Эксплойта нет | Corega CG-WLNCM4G devices provide an open DNS resolver, which allows remote attackers to cause a denial of service (traffic amplification) vcorega · cg-wlncm4g firmware · CWE-20 | Средняя5,8 | — | 1,6 % | 30 дек. 2015 г. |
23Наблюдать | CVE-2015-7793Эксплойта нет | Corega CG-WLBARAGM devices provide an open proxy service, which allows remote attackers to trigger outbound network traffic via unspecified corega · cg-wlbaragm firmware · CWE-17 | Средняя5,8 | — | 1,6 % | 30 дек. 2015 г. |
21Наблюдать | CVE-2016-4824Эксплойта нет | The Wi-Fi Protected Setup (WPS) implementation on Corega CG-WLR300GNV and CG-WLR300GNV-W devices does not restrict the number of PIN authentcorega · cg-wlr300gnv · CWE-254 | Средняя5,3 | — | 1,4 % | 25 июн. 2016 г. |
19Наблюдать | CVE-2016-7810Эксплойта нет | Cross-site scripting vulnerability in Corega CG-WLR300NX firmware Ver.corega · cg-wlr300nx firmware · CWE-79 | Средняя4,8 | — | 0,8 % | 9 июн. 2017 г. |
- CVE-2015-779240В плане
Corega CG-WLBARGS devices allow remote attackers to perform administrative operations via unspecified vectors.
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %corega · cg-wlbargs firmware30 дек. 2015 г.
- CVE-2016-780935Наблюдать
Cross-site request forgery (CSRF) vulnerability in Corega CG-WLR300NX firmware Ver.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %corega · cg-wlr300nx firmware9 июн. 2017 г.
- CVE-2016-781135Наблюдать
Corega CG-WLR300NX firmware Ver.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %corega · cg-wlr300nx firmware9 июн. 2017 г.
- CVE-2017-1085235Наблюдать
Buffer overflow in Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to execute arbitrary code via unspecified vectors.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %corega · cg-wgr 1200 firmware9 мар. 2018 г.
- CVE-2017-1085335Наблюдать
Buffer overflow in Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to execute arbitrary commands via unspecified vectors.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %corega · cg-wgr 1200 firmware9 мар. 2018 г.
- CVE-2016-115835Наблюдать
Cross-site request forgery (CSRF) vulnerability on Corega CG-WLBARGMH and CG-WLBARGNL devices allows remote attackers to hijack the authenti
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %corega · cg-wlbargmh3 мар. 2016 г.
- CVE-2017-1085435Наблюдать
Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to bypass authentication and change the login password via unspecified vector
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %corega · cg-wgr 1200 firmware9 мар. 2018 г.
- CVE-2016-482232Наблюдать
Corega CG-WLBARGL devices allow remote authenticated users to execute arbitrary commands via unspecified vectors.
ВысокаяCVSS 8,0Эксплойта нетEPSS 1 %corega · cg-wlbargl firmware25 июн. 2016 г.
- CVE-2016-482331Наблюдать
Corega CG-WLBARAGM devices allow remote attackers to cause a denial of service (reboot) via unspecified vectors.
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %corega · cg-wlbargmh25 июн. 2016 г.
- CVE-2017-1081427Наблюдать
Buffer overflow in CG-WLR300NM Firmware version 1.90 and earlier allows an attacker to execute arbitrary code via unspecified vectors.
СредняяCVSS 6,8Эксплойта нетEPSS 1 %corega · wlr 300 nm firmware15 сент. 2017 г.
- CVE-2017-1081327Наблюдать
CG-WLR300NM Firmware version 1.90 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors.
СредняяCVSS 6,8Эксплойта нетEPSS 1 %corega · wlr 300 nm firmware15 сент. 2017 г.
- CVE-2016-780824Наблюдать
Cross-site scripting vulnerability in Corega CG-WLBARGMH and CG-WLBARGNL allows remote attackers to inject arbitrary web script or HTML via
СредняяCVSS 6,1Эксплойта нетEPSS 1 %corega · cg-wlbaragm firmware9 июн. 2017 г.
- CVE-2015-779423Наблюдать
Corega CG-WLNCM4G devices provide an open DNS resolver, which allows remote attackers to cause a denial of service (traffic amplification) v
СредняяCVSS 5,8Эксплойта нетEPSS 2 %corega · cg-wlncm4g firmware30 дек. 2015 г.
- CVE-2015-779323Наблюдать
Corega CG-WLBARAGM devices provide an open proxy service, which allows remote attackers to trigger outbound network traffic via unspecified
СредняяCVSS 5,8Эксплойта нетEPSS 2 %corega · cg-wlbaragm firmware30 дек. 2015 г.
- CVE-2016-482421Наблюдать
The Wi-Fi Protected Setup (WPS) implementation on Corega CG-WLR300GNV and CG-WLR300GNV-W devices does not restrict the number of PIN authent
СредняяCVSS 5,3Эксплойта нетEPSS 1 %corega · cg-wlr300gnv25 июн. 2016 г.
- CVE-2016-781019Наблюдать
Cross-site scripting vulnerability in Corega CG-WLR300NX firmware Ver.
СредняяCVSS 4,8Эксплойта нетEPSS 1 %corega · cg-wlr300nx firmware9 июн. 2017 г.