Записи iptime
13 опубликованных записей вендора iptime.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 7,7 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-352 Cross-Site Request Forgery (CSRF)2
- CWE-287 Improper Authentication2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-284 Improper Access Control1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-749 Exposed Dangerous Method or Function1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
13 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2025-55423Proof of concept | A command injection vulnerability exists in the upnp_relay() function in multiple ipTIME router models because the controlURL value used to iptime · n104s-r1 firmware · CWE-94 | Критическая9,8 | — | 3,8 % | 20 янв. 2026 г. |
40В плане | CVE-2021-26614Эксплойта нет | IpTime C200 IP camera remote code execution vulnerabilityiptime · c200 firmware · CWE-749 | Критическая9,8 | — | 2,5 % | 22 нояб. 2021 г. |
39Наблюдать | CVE-2020-7879Эксплойта нет | ipTIME C200 IP Camera command injection vulnerabilityiptime · c200 firmware · CWE-78 | Критическая9,8 | — | 1,4 % | 30 нояб. 2021 г. |
35Наблюдать | CVE-2022-23765Эксплойта нет | IPTIME NAS family CSRF vulnerabilityiptime · nas1dual firmware · CWE-352 | Высокая8,8 | — | 0,5 % | 17 авг. 2022 г. |
35Наблюдать | CVE-2022-23771Эксплойта нет | IPTIME NAS1DUAL CSRF Vulnerabilityiptime · nas1dual firmware · CWE-352 | Высокая8,8 | — | 0,3 % | 17 окт. 2022 г. |
32Наблюдать | CVE-2020-7848Эксплойта нет | The EFM ipTIME C200 IP Camera is affected by a Command Injection vulnerability in /login.cgi?logout=1 script.iptime · c200 firmware · CWE-20 | Высокая8,0 | — | 1,1 % | 17 февр. 2021 г. |
32Наблюдать | CVE-2020-7847Эксплойта нет | The ipTIME NAS product allows an arbitrary file upload vulnerability in the Manage Bulletins/Upload feature, which can be leveraged to gain iptime · nas-i firmware · CWE-434 | Высокая8,0 | — | 0,5 % | 23 февр. 2021 г. |
30Наблюдать | CVE-2021-26620Эксплойта нет | IPTIME NAS2dual improper authentication vulnerabilityiptime · nas101 firmware · CWE-287 | Высокая7,5 | — | 1,4 % | 25 мар. 2022 г. |
26Наблюдать | CVE-2026-1741Эксплойта нет | EFM ipTIME A8004T Debug d.cgi httpcon_check_session_url backdooriptime · a8004t firmware · CWE-912 | Средняя6,6 | — | 0,7 % | 2 февр. 2026 г. |
26Наблюдать | CVE-2025-50464Эксплойта нет | A buffer overflow vulnerability exists in the upload.cgi module of the iptime NAS firmware v1.5.04.iptime · nas firmware · CWE-121 | Средняя6,5 | — | 0,5 % | 30 июл. 2025 г. |
24Наблюдать | CVE-2026-24498Эксплойта нет | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in EFM-Networks, Inc.iptime · t5008 firmware · CWE-200 | Средняя6,0 | — | 0,4 % | 26 февр. 2026 г. |
22Наблюдать | CVE-2026-1740Эксплойта нет | EFM ipTIME A8004T Hidden Hiddenloginsetup timepro.cgi httpcon_check_session_url improper authenticationiptime · a8004t firmware · CWE-287 | Средняя5,5 | — | 0,5 % | 2 февр. 2026 г. |
8Наблюдать | CVE-2026-1742Эксплойта нет | EFM ipTIME A8004T VPN Service timepro.cgi commit_vpncli_file_upload unrestricted uploadiptime · a8004t firmware · CWE-284 | Низкая2,0 | — | 0,4 % | 2 февр. 2026 г. |
- CVE-2025-5542340В плане
A command injection vulnerability exists in the upnp_relay() function in multiple ipTIME router models because the controlURL value used to
КритическаяCVSS 9,8Proof of conceptEPSS 4 %iptime · n104s-r1 firmware20 янв. 2026 г.
- CVE-2021-2661440В плане
IpTime C200 IP camera remote code execution vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %iptime · c200 firmware22 нояб. 2021 г.
- CVE-2020-787939Наблюдать
ipTIME C200 IP Camera command injection vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %iptime · c200 firmware30 нояб. 2021 г.
- CVE-2022-2376535Наблюдать
IPTIME NAS family CSRF vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %iptime · nas1dual firmware17 авг. 2022 г.
- CVE-2022-2377135Наблюдать
IPTIME NAS1DUAL CSRF Vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %iptime · nas1dual firmware17 окт. 2022 г.
- CVE-2020-784832Наблюдать
The EFM ipTIME C200 IP Camera is affected by a Command Injection vulnerability in /login.cgi?logout=1 script.
ВысокаяCVSS 8,0Эксплойта нетEPSS 1 %iptime · c200 firmware17 февр. 2021 г.
- CVE-2020-784732Наблюдать
The ipTIME NAS product allows an arbitrary file upload vulnerability in the Manage Bulletins/Upload feature, which can be leveraged to gain
ВысокаяCVSS 8,0Эксплойта нетEPSS 1 %iptime · nas-i firmware23 февр. 2021 г.
- CVE-2021-2662030Наблюдать
IPTIME NAS2dual improper authentication vulnerability
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %iptime · nas101 firmware25 мар. 2022 г.
- CVE-2026-174126Наблюдать
EFM ipTIME A8004T Debug d.cgi httpcon_check_session_url backdoor
СредняяCVSS 6,6Эксплойта нетEPSS 1 %iptime · a8004t firmware2 февр. 2026 г.
- CVE-2025-5046426Наблюдать
A buffer overflow vulnerability exists in the upload.cgi module of the iptime NAS firmware v1.5.04.
СредняяCVSS 6,5Эксплойта нетEPSS 0 %iptime · nas firmware30 июл. 2025 г.
- CVE-2026-2449824Наблюдать
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in EFM-Networks, Inc.
СредняяCVSS 6,0Эксплойта нетEPSS 0 %iptime · t5008 firmware26 февр. 2026 г.
- CVE-2026-174022Наблюдать
EFM ipTIME A8004T Hidden Hiddenloginsetup timepro.cgi httpcon_check_session_url improper authentication
СредняяCVSS 5,5Эксплойта нетEPSS 1 %iptime · a8004t firmware2 февр. 2026 г.
- CVE-2026-17428Наблюдать
EFM ipTIME A8004T VPN Service timepro.cgi commit_vpncli_file_upload unrestricted upload
НизкаяCVSS 2,0Эксплойта нетEPSS 0 %iptime · a8004t firmware2 февр. 2026 г.