Записи harmonicinc
4 опубликованных записей вендора harmonicinc.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-798 Use of Hard-coded Credentials1
- CWE-862 Missing Authorization1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
4 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2018-14943Эксплойта нет | Harmonic NSG 9000 devices have a default password of nsgadmin for the admin account, a default password of nsgguest for the guest account, aharmonicinc · nsg 9000 firmware · CWE-798 | Критическая9,8 | — | 1,5 % | 5 авг. 2018 г. |
36Наблюдать | CVE-2018-14942Эксплойта нет | Harmonic NSG 9000 devices allow remote authenticated users to conduct directory traversal attacks, as demonstrated by "POST /PY/EMULATION_GEharmonicinc · nsg 9000 firmware · CWE-22 | Высокая8,8 | — | 2,0 % | 5 авг. 2018 г. |
26Наблюдать | CVE-2018-14941Эксплойта нет | Harmonic NSG 9000 devices allow remote authenticated users to read the webapp.py source code via a direct request for the /webapp.py URI.harmonicinc · nsg 9000 · CWE-200 | Средняя6,5 | — | 1,0 % | 5 авг. 2018 г. |
26Наблюдать | CVE-2023-33477Proof of concept | In Harmonic NSG 9000-6G devices, an authenticated remote user can obtain source code by directly requesting a special path.harmonicinc · nsg 9000-6g firmware · CWE-862 | Средняя6,5 | — | 1,0 % | 6 июн. 2023 г. |
- CVE-2018-1494339Наблюдать
Harmonic NSG 9000 devices have a default password of nsgadmin for the admin account, a default password of nsgguest for the guest account, a
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %harmonicinc · nsg 9000 firmware5 авг. 2018 г.
- CVE-2018-1494236Наблюдать
Harmonic NSG 9000 devices allow remote authenticated users to conduct directory traversal attacks, as demonstrated by "POST /PY/EMULATION_GE
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %harmonicinc · nsg 9000 firmware5 авг. 2018 г.
- CVE-2018-1494126Наблюдать
Harmonic NSG 9000 devices allow remote authenticated users to read the webapp.py source code via a direct request for the /webapp.py URI.
СредняяCVSS 6,5Эксплойта нетEPSS 1 %harmonicinc · nsg 90005 авг. 2018 г.
- CVE-2023-3347726Наблюдать
In Harmonic NSG 9000-6G devices, an authenticated remote user can obtain source code by directly requesting a special path.
СредняяCVSS 6,5Proof of conceptEPSS 1 %harmonicinc · nsg 9000-6g firmware6 июн. 2023 г.