Записи Intelbras
51 опубликованных записей вендора intelbras.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 7,8 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-352 Cross-Site Request Forgery (CSRF)9
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')9
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor4
- CWE-640 Weak Password Recovery Mechanism for Forgotten Password2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-284 Improper Access Control2
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
51 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
57В плане | CVE-2017-14942Proof of concept | Intelbras WRN 150 devices allow remote attackers to read the configuration file, and consequently bypass authentication, via a direct requesintelbras · wrn 150 firmware · CWE-552 | Критическая9,8 | — | 60,9 % | 29 сент. 2017 г. |
49В плане | CVE-2021-3017Proof of concept | The web interface on Intelbras WIN 300 and WRN 342 devices through 2021-01-04 allows remote attackers to discover credentials by reading theintelbras · win 300 firmware | Высокая7,5 | — | 63,0 % | 14 апр. 2021 г. |
49В плане | CVE-2018-11094Proof of concept | An issue was discovered on Intelbras NCLOUD 300 1.0 devices.intelbras · ncloud 300 firmware · CWE-798 | Критическая9,8 | — | 33,4 % | 15 мая 2018 г. |
46В плане | CVE-2022-40005Эксплойта нет | Intelbras WiFiber 120AC inMesh before 1-1-220826 allows command injection by authenticated users, as demonstrated by the /boaform/formPing6 intelbras · wifiber 120ac inmesh firmware · CWE-78 | Высокая8,8 | — | 35,0 % | 25 дек. 2022 г. |
41В плане | CVE-2023-36144Proof of concept | An authentication bypass in Intelbras Switch SG 2404 MR in firmware 1.00.54 allows an unauthenticated attacker to download the backup file ointelbras · sg 2404 mr firmware · CWE-862 | Высокая7,5 | — | 36,5 % | 30 июн. 2023 г. |
40В плане | CVE-2018-10369Эксплойта нет | A Cross-site scripting (XSS) vulnerability was discovered on Intelbras Win 240 V1.1.0 devices.intelbras · win 240 firmware · CWE-79 | Критическая9,8 | — | 1,9 % | 15 авг. 2018 г. |
39Наблюдать | CVE-2025-26063Эксплойта нет | An issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to execute arbitrary code via injecting a crafted paintelbras · rx 1500 firmware · CWE-77 | Критическая9,8 | — | 1,3 % | 31 июл. 2025 г. |
39Наблюдать | CVE-2019-17600Эксплойта нет | Intelbras IWR 1000N 1.6.4 devices allow disclosure of the administrator login name and password because v1/system/user is mishandled.intelbras · iwr 1000n firmware · CWE-352 | Критическая9,8 | — | 1,2 % | 15 окт. 2019 г. |
39Наблюдать | CVE-2025-26062Эксплойта нет | An access control issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to access the router's settings file intelbras · rx 1500 firmware · CWE-284 | Критическая9,8 | — | 1,1 % | 31 июл. 2025 г. |
36Наблюдать | CVE-2019-11416Proof of concept | A CSRF issue was discovered on Intelbras IWR 3000N 1.5.0 devices, leading to complete control of the router, as demonstrated by v1/system/usintelbras · iwr 3000n firmware · CWE-352 | Высокая8,8 | — | 3,9 % | 22 апр. 2019 г. |
36Наблюдать | CVE-2021-32403Proof of concept | Intelbras Router RF 301K Firmware 1.1.2 is vulnerable to Cross Site Request Forgery (CSRF) due to lack of security mechanisms for token protintelbras · rf 301k firmware · CWE-352 | Высокая8,8 | — | 2,5 % | 17 мая 2021 г. |
35Наблюдать | CVE-2019-11414Эксплойта нет | An issue was discovered on Intelbras IWR 3000N 1.5.0 devices.intelbras · iwr 3000n firmware · CWE-640 | Высокая8,8 | — | 1,3 % | 22 апр. 2019 г. |
35Наблюдать | CVE-2019-20004Эксплойта нет | An issue was discovered on Intelbras IWR 3000N 1.8.7 devices.intelbras · iwr 3000n firmware · CWE-640 | Высокая8,8 | — | 1,2 % | 5 янв. 2020 г. |
35Наблюдать | CVE-2018-12456Эксплойта нет | Intelbras NPLUG 1.0.0.14 wireless repeater devices have no CSRF token protection in the web interface, allowing attackers to perform actionsintelbras · nplug firmware · CWE-352 | Высокая8,8 | — | 0,9 % | 10 окт. 2018 г. |
35Наблюдать | CVE-2019-19995Эксплойта нет | A CSRF issue was discovered on Intelbras IWR 3000N 1.8.7 devices, leading to complete control of the router, as demonstrated by v1/system/usintelbras · iwr 3000n firmware · CWE-352 | Высокая8,8 | — | 0,7 % | 26 дек. 2019 г. |
35Наблюдать | CVE-2019-19517Эксплойта нет | Intelbras RF1200 1.1.3 devices allow CSRF to bypass the login.html form, as demonstrated by launching a scrapy process.intelbras · action rf 1200 firmware · CWE-352 | Высокая8,8 | — | 0,5 % | 5 мая 2020 г. |
35Наблюдать | CVE-2021-32402Эксплойта нет | Intelbras Router RF 301K Firmware 1.1.2 is vulnerable to Cross Site Request Forgery (CSRF) due to lack of validation and insecure configuratintelbras · rf 301k firmware · CWE-352 | Высокая8,8 | — | 0,5 % | 17 мая 2021 г. |
35Наблюдать | CVE-2020-8829Эксплойта нет | CSRF on Intelbras CIP 92200 devices allows an attacker to access the panel and perform scraping or other analysis.intelbras · cip 92200 firmware · CWE-352 | Высокая8,8 | — | 0,5 % | 5 мая 2020 г. |
34Наблюдать | CVE-2019-11415Proof of concept | An issue was discovered on Intelbras IWR 3000N 1.5.0 devices.intelbras · iwr 3000n firmware | Высокая7,5 | — | 13,7 % | 22 апр. 2019 г. |
34Наблюдать | CVE-2018-12455Proof of concept | Intelbras NPLUG 1.0.0.14 wireless repeater devices have a critical vulnerability that allows an attacker to authenticate in the web interfacintelbras · nplug firmware · CWE-287 | Высокая8,1 | — | 5,9 % | 10 окт. 2018 г. |
34Наблюдать | CVE-2025-55976Эксплойта нет | Intelbras IWR 3000N 1.9.8 exposes the Wi-Fi password in plaintext via the /api/wireless endpoint.intelbras · iwr 3000n firmware · CWE-200 | Высокая8,4 | — | 3,2 % | 10 сент. 2025 г. |
34Наблюдать | CVE-2024-9325Эксплойта нет | Intelbras InControl incontrol-service-watchdog.exe unquoted search pathintelbras · incontrol web · CWE-426 | Высокая8,5 | — | 0,3 % | 29 сент. 2024 г. |
34Наблюдать | CVE-2024-6080Эксплойта нет | Intelbras InControl incontrolWebcam Service unquoted search pathintelbras · incontrol · CWE-426 | Высокая8,5 | — | 0,2 % | 17 июн. 2024 г. |
32Наблюдать | CVE-2019-19142Proof of concept | Intelbras WRN240 devices do not require authentication to replace the firmware via a POST request to the incoming/Firmware.cfg URI.intelbras · wrn 240 firmware · CWE-306 | Высокая7,5 | — | 7,8 % | 16 янв. 2020 г. |
32Наблюдать | CVE-2024-22773Эксплойта нет | Intelbras Action RF 1200 routers 1.2.2 and earlier and Action RG 1200 routers 2.1.7 and earlier expose the Password in Cookie resulting in Lintelbras · action rf 1200 firmware · CWE-922 | Высокая8,1 | — | 1,0 % | 5 февр. 2024 г. |
- CVE-2017-1494257В плане
Intelbras WRN 150 devices allow remote attackers to read the configuration file, and consequently bypass authentication, via a direct reques
КритическаяCVSS 9,8Proof of conceptEPSS 61 %intelbras · wrn 150 firmware29 сент. 2017 г.
- CVE-2021-301749В плане
The web interface on Intelbras WIN 300 and WRN 342 devices through 2021-01-04 allows remote attackers to discover credentials by reading the
ВысокаяCVSS 7,5Proof of conceptEPSS 63 %intelbras · win 300 firmware14 апр. 2021 г.
- CVE-2018-1109449В плане
An issue was discovered on Intelbras NCLOUD 300 1.0 devices.
КритическаяCVSS 9,8Proof of conceptEPSS 33 %intelbras · ncloud 300 firmware15 мая 2018 г.
- CVE-2022-4000546В плане
Intelbras WiFiber 120AC inMesh before 1-1-220826 allows command injection by authenticated users, as demonstrated by the /boaform/formPing6
ВысокаяCVSS 8,8Эксплойта нетEPSS 35 %intelbras · wifiber 120ac inmesh firmware25 дек. 2022 г.
- CVE-2023-3614441В плане
An authentication bypass in Intelbras Switch SG 2404 MR in firmware 1.00.54 allows an unauthenticated attacker to download the backup file o
ВысокаяCVSS 7,5Proof of conceptEPSS 37 %intelbras · sg 2404 mr firmware30 июн. 2023 г.
- CVE-2018-1036940В плане
A Cross-site scripting (XSS) vulnerability was discovered on Intelbras Win 240 V1.1.0 devices.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %intelbras · win 240 firmware15 авг. 2018 г.
- CVE-2025-2606339Наблюдать
An issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to execute arbitrary code via injecting a crafted pa
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %intelbras · rx 1500 firmware31 июл. 2025 г.
- CVE-2019-1760039Наблюдать
Intelbras IWR 1000N 1.6.4 devices allow disclosure of the administrator login name and password because v1/system/user is mishandled.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %intelbras · iwr 1000n firmware15 окт. 2019 г.
- CVE-2025-2606239Наблюдать
An access control issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to access the router's settings file
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %intelbras · rx 1500 firmware31 июл. 2025 г.
- CVE-2019-1141636Наблюдать
A CSRF issue was discovered on Intelbras IWR 3000N 1.5.0 devices, leading to complete control of the router, as demonstrated by v1/system/us
ВысокаяCVSS 8,8Proof of conceptEPSS 4 %intelbras · iwr 3000n firmware22 апр. 2019 г.
- CVE-2021-3240336Наблюдать
Intelbras Router RF 301K Firmware 1.1.2 is vulnerable to Cross Site Request Forgery (CSRF) due to lack of security mechanisms for token prot
ВысокаяCVSS 8,8Proof of conceptEPSS 2 %intelbras · rf 301k firmware17 мая 2021 г.
- CVE-2019-1141435Наблюдать
An issue was discovered on Intelbras IWR 3000N 1.5.0 devices.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %intelbras · iwr 3000n firmware22 апр. 2019 г.
- CVE-2019-2000435Наблюдать
An issue was discovered on Intelbras IWR 3000N 1.8.7 devices.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %intelbras · iwr 3000n firmware5 янв. 2020 г.
- CVE-2018-1245635Наблюдать
Intelbras NPLUG 1.0.0.14 wireless repeater devices have no CSRF token protection in the web interface, allowing attackers to perform actions
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %intelbras · nplug firmware10 окт. 2018 г.
- CVE-2019-1999535Наблюдать
A CSRF issue was discovered on Intelbras IWR 3000N 1.8.7 devices, leading to complete control of the router, as demonstrated by v1/system/us
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %intelbras · iwr 3000n firmware26 дек. 2019 г.
- CVE-2019-1951735Наблюдать
Intelbras RF1200 1.1.3 devices allow CSRF to bypass the login.html form, as demonstrated by launching a scrapy process.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %intelbras · action rf 1200 firmware5 мая 2020 г.
- CVE-2021-3240235Наблюдать
Intelbras Router RF 301K Firmware 1.1.2 is vulnerable to Cross Site Request Forgery (CSRF) due to lack of validation and insecure configurat
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %intelbras · rf 301k firmware17 мая 2021 г.
- CVE-2020-882935Наблюдать
CSRF on Intelbras CIP 92200 devices allows an attacker to access the panel and perform scraping or other analysis.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %intelbras · cip 92200 firmware5 мая 2020 г.
- CVE-2019-1141534Наблюдать
An issue was discovered on Intelbras IWR 3000N 1.5.0 devices.
ВысокаяCVSS 7,5Proof of conceptEPSS 14 %intelbras · iwr 3000n firmware22 апр. 2019 г.
- CVE-2018-1245534Наблюдать
Intelbras NPLUG 1.0.0.14 wireless repeater devices have a critical vulnerability that allows an attacker to authenticate in the web interfac
ВысокаяCVSS 8,1Proof of conceptEPSS 6 %intelbras · nplug firmware10 окт. 2018 г.
- CVE-2025-5597634Наблюдать
Intelbras IWR 3000N 1.9.8 exposes the Wi-Fi password in plaintext via the /api/wireless endpoint.
ВысокаяCVSS 8,4Эксплойта нетEPSS 3 %intelbras · iwr 3000n firmware10 сент. 2025 г.
- CVE-2024-932534Наблюдать
Intelbras InControl incontrol-service-watchdog.exe unquoted search path
ВысокаяCVSS 8,5Эксплойта нетEPSS 0 %intelbras · incontrol web29 сент. 2024 г.
- CVE-2024-608034Наблюдать
Intelbras InControl incontrolWebcam Service unquoted search path
ВысокаяCVSS 8,5Эксплойта нетEPSS 0 %intelbras · incontrol17 июн. 2024 г.
- CVE-2019-1914232Наблюдать
Intelbras WRN240 devices do not require authentication to replace the firmware via a POST request to the incoming/Firmware.cfg URI.
ВысокаяCVSS 7,5Proof of conceptEPSS 8 %intelbras · wrn 240 firmware16 янв. 2020 г.
- CVE-2024-2277332Наблюдать
Intelbras Action RF 1200 routers 1.2.2 and earlier and Action RG 1200 routers 2.1.7 and earlier expose the Password in Cookie resulting in L
ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %intelbras · action rf 1200 firmware5 февр. 2024 г.