Перейти к содержимому
Noroxi

Записи GL-iNet

57 опубликованных записей вендора gl-inet.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
2 · 3,5 %
Pre-auth RCE
13
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

57 записей
  • CVE-2023-50919
    53В плане

    An issue was discovered on GL.iNet devices before version 4.5.0.

    КритическаяCVSS 9,8Готовый эксплойтEPSS 48 %

    gl-inet · gl-ax1800 firmware12 янв. 2024 г.

  • CVE-2023-46456
    46В плане

    In GL.iNET GL-AR300M routers with firmware 3.216 it is possible to inject arbitrary shell commands through the OpenVPN client file upload fu

    КритическаяCVSS 9,8Эксплойта нетEPSS 25 %

    gl-inet · gl-ar300m firmware12 дек. 2023 г.

  • CVE-2023-46454
    46В плане

    In GL.iNET GL-AR300M routers with firmware v4.3.7, it is possible to inject arbitrary shell commands through a crafted package name in the p

    КритическаяCVSS 9,8Proof of conceptEPSS 23 %

    gl-inet · gl-ar300m firmware12 дек. 2023 г.

  • CVE-2024-39226
    45В плане

    GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT1800/AX1800/A1300/X300B v4.5.16,

    КритическаяCVSS 9,8Эксплойта нетEPSS 20 %

    gl-inet · mt6000 firmware6 авг. 2024 г.

  • CVE-2023-46455
    44В плане

    In GL.iNET GL-AR300M routers with firmware v4.3.7 it is possible to write arbitrary files through a path traversal attack in the OpenVPN cli

    ВысокаяCVSS 7,5Proof of conceptEPSS 47 %

    gl-inet · gl-ar300m firmware12 дек. 2023 г.

  • CVE-2023-29778
    44В плане

    GL.iNET MT3000 4.1.0 Release 2 is vulnerable to OS Command Injection via /usr/lib/oui-httpd/rpc/logread.

    КритическаяCVSS 9,8Эксплойта нетEPSS 16 %

    gl-inet · gl-mt3000 firmware2 мая 2023 г.

  • CVE-2024-39225
    43В плане

    GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT1800/AX1800/A1300/X300B v4.5.16,

    КритическаяCVSS 9,8Эксплойта нетEPSS 14 %

    gl-inet · mt6000 firmware6 авг. 2024 г.

  • CVE-2023-31475
    43В плане

    An issue was discovered on GL.iNet devices before 3.216.

    КритическаяCVSS 9,8Эксплойта нетEPSS 14 %

    gl-inet · gl-s20 firmware11 мая 2023 г.

  • CVE-2023-47464
    42В плане

    Insecure Permissions vulnerability in GL.iNet AX1800 version 4.0.0 before 4.5.0 allows a remote attacker to execute arbitrary code via the u

    ВысокаяCVSS 8,8Proof of conceptEPSS 23 %

    gl-inet · gl-ax1800 firmware30 нояб. 2023 г.

  • CVE-2026-26792
    40В плане

    GL-iNet GL-AR300M16 v4.3.11 was discovered to contain multiple command injection vulnerabilities in the set_upgrade function via the modem_u

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    gl-inet · ar300m16 firmware12 мар. 2026 г.

  • CVE-2026-26793
    40В плане

    GL-iNet GL-AR300M16 v4.3.11 was discovered to contain a command injection vulnerability via the set_config function.

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    gl-inet · ar300m16 firmware12 мар. 2026 г.

  • CVE-2026-26795
    40В плане

    GL-iNet GL-AR300M16 v4.3.11 was discovered to contain a command injection vulnerability via the module parameter in the M.get_system_log fun

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    gl-inet · ar300m16 firmware12 мар. 2026 г.

  • CVE-2026-26791
    40В плане

    GL-iNet GL-AR300M16 v4.3.11 was discovered to contain a command injection vulnerability via the string port parameter in the enable_echo_ser

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    gl-inet · ar300m16 firmware12 мар. 2026 г.

  • CVE-2023-31478
    39Наблюдать

    An issue was discovered on GL.iNet devices before 3.216.

    ВысокаяCVSS 7,5Proof of conceptEPSS 30 %

    gl-inet · gl-s20 firmware9 мая 2023 г.

  • CVE-2019-6272
    39Наблюдать

    Command injection vulnerability in login_cgi in GL.iNet GL-AR300M-Lite devices with firmware 2.27 allows remote attackers to execute arbitra

    ВысокаяCVSS 8,8Proof of conceptEPSS 13 %

    gl-inet · gl-ar300m-lite firmware21 мар. 2019 г.

  • CVE-2019-6275
    39Наблюдать

    Command injection vulnerability in firmware_cgi in GL.iNet GL-AR300M-Lite devices with firmware 2.27 allows remote attackers to execute arbi

    ВысокаяCVSS 8,8Proof of conceptEPSS 13 %

    gl-inet · gl-ar300m-lite firmware21 мар. 2019 г.

  • CVE-2023-47462
    39Наблюдать

    Insecure Permissions vulnerability in GL.iNet AX1800 v.3.215 and before allows a remote attacker to execute arbitrary code via the file shar

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    gl-inet · gl-ax1800 firmware29 нояб. 2023 г.

  • CVE-2023-47463
    39Наблюдать

    Insecure Permissions vulnerability in GL.iNet AX1800 version 4.0.0 before 4.5.0 allows a remote attacker to execute arbitrary code via a cra

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    gl-inet · gl-ax1800 firmware30 нояб. 2023 г.

  • CVE-2024-39227
    39Наблюдать

    GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT1800/AX1800/A1300/X300B v4.5.16,

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    gl-inet · mt6000 firmware6 авг. 2024 г.

  • CVE-2023-31471
    39Наблюдать

    An issue was discovered on GL.iNet devices before 3.216.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    gl-inet · gl-s20 firmware10 мая 2023 г.

  • CVE-2024-39228
    39Наблюдать

    GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT1800/AX1800/A1300/X300B v4.5.16,

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    gl-inet · mt6000 firmware6 авг. 2024 г.

  • CVE-2023-50921
    39Наблюдать

    An issue was discovered on GL.iNet devices through 4.5.0.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    gl-inet · gl-mt1300 firmware3 янв. 2024 г.

  • CVE-2019-6274
    38Наблюдать

    Directory traversal vulnerability in storage_cgi in GL.iNet GL-AR300M-Lite devices with firmware 2.27 allows remote attackers to have unspec

    ВысокаяCVSS 8,8Proof of conceptEPSS 11 %

    gl-inet · gl-ar300m-lite firmware21 мар. 2019 г.

  • CVE-2024-27356
    37Наблюдать

    An issue was discovered on certain GL-iNet devices.

    ВысокаяCVSS 7,5Proof of conceptEPSS 24 %

    gl-inet · mt6000 firmware26 февр. 2024 г.

  • CVE-2026-32292
    37Наблюдать

    GL-iNet Comet (GL-RM1) KVM insufficient login rate-limiting

    КритическаяCVSS 9,3Эксплойта нетEPSS 1 %

    gl-inet · comet gl-rm1 firmware17 мар. 2026 г.