Записи Marvell
40 опубликованных записей вендора marvell.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 1 · 2,5 %
- Pre-auth RCE
- 6
- С записью об исправлении
- 2,5 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')24
- CWE-20 Improper Input Validation3
- CWE-787 Out-of-bounds Write3
- CWE-434 Unrestricted Upload of File with Dangerous Type2
- CWE-749 Exposed Dangerous Method or Function1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
40 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
53В плане | CVE-2020-15643Эксплойта нет | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole 5.5.0.64.marvell · qconvergeconsole · CWE-22 | Высокая8,8 | — | 58,7 % | 25 авг. 2020 г. |
42В плане | CVE-2025-6793Готовый эксплойт | Marvell QConvergeConsole QLogicDownloadImpl Directory Traversal Arbitrary File Deletion and Information Disclosure Vulnerabilitymarvell · qconvergeconsole · CWE-22 | Критическая9,4 | — | 17,6 % | 7 июл. 2025 г. |
42В плане | CVE-2020-15639Эксплойта нет | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole 5.5.0.64.marvell · qconvergeconsole · CWE-22 | Критическая9,8 | — | 11,5 % | 25 авг. 2020 г. |
40В плане | CVE-2019-13581Эксплойта нет | An issue was discovered in Marvell 88W8688 Wi-Fi firmware before version p52, as used on Tesla Model S/X vehicles manufactured before March marvell · 88w8688 firmware · CWE-787 | Критическая9,8 | — | 3,4 % | 15 нояб. 2019 г. |
40В плане | CVE-2019-13582Эксплойта нет | An issue was discovered in Marvell 88W8688 Wi-Fi firmware before version p52, as used on Tesla Model S/X vehicles manufactured before March marvell · 88w8688 firmware · CWE-787 | Критическая9,8 | — | 2,2 % | 15 нояб. 2019 г. |
40В плане | CVE-2008-4594Эксплойта нет | Unspecified vulnerability in the SNMPv3 component in Linksys WAP4400N firmware 1.2.14 on the Marvell Semiconductor 88W8361P-BEM1 chipset haslinksys · wap400n | Критическая10,0 | — | 1,5 % | 17 окт. 2008 г. |
39Наблюдать | CVE-2025-6794Эксплойта нет | Marvell QConvergeConsole saveAsText Directory Traversal Remote Code Execution Vulnerabilitymarvell · qconvergeconsole · CWE-22 | Критическая9,8 | — | 1,4 % | 7 июл. 2025 г. |
39Наблюдать | CVE-2025-6802Эксплойта нет | Marvell QConvergeConsole getFileFromURL Unrestricted File Upload Remote Code Execution Vulnerabilitymarvell · qconvergeconsole · CWE-434 | Критическая9,8 | — | 0,7 % | 7 июл. 2025 г. |
38Наблюдать | CVE-2020-15645Эксплойта нет | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole 5.5.0.64.marvell · qconvergeconsole · CWE-434 | Высокая8,8 | — | 10,7 % | 25 авг. 2020 г. |
38Наблюдать | CVE-2020-17387Эксплойта нет | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole 5.5.0.64.marvell · qconvergeconsole · CWE-22 | Высокая8,8 | — | 10,1 % | 25 авг. 2020 г. |
38Наблюдать | CVE-2020-17389Эксплойта нет | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole 5.5.0.64.marvell · qconvergeconsole · CWE-22 | Высокая8,8 | — | 10,1 % | 25 авг. 2020 г. |
38Наблюдать | CVE-2020-15644Эксплойта нет | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole 5.5.0.64.marvell · qconvergeconsole · CWE-22 | Высокая8,8 | — | 9,3 % | 25 авг. 2020 г. |
37Наблюдать | CVE-2020-17388Эксплойта нет | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole 5.5.0.64.marvell · qconvergeconsole · CWE-749 | Высокая8,8 | — | 7,5 % | 25 авг. 2020 г. |
37Наблюдать | CVE-2020-15642Эксплойта нет | This vulnerability allows remote attackers to execute arbitrary code on affected installations of installations of Marvell QConvergeConsole marvell · qconvergeconsole · CWE-77 | Высокая8,8 | — | 7,2 % | 25 авг. 2020 г. |
37Наблюдать | CVE-2019-6496Эксплойта нет | The ThreadX-based firmware on Marvell Avastar Wi-Fi devices, models 88W8787, 88W8797, 88W8801, 88W8897, and 88W8997, allows remote attackersmarvell · 88w8787 firmware · CWE-787 | Высокая8,8 | — | 6,6 % | 20 янв. 2019 г. |
37Наблюдать | CVE-2025-8426Эксплойта нет | Marvell QConvergeConsole compressConfigFiles Directory Traversal Information Disclosure and Denial-of-Service Vulnerabilitymarvell · qconvergeconsole · CWE-22 | Критическая9,4 | — | 1,3 % | 31 июл. 2025 г. |
36Наблюдать | CVE-2025-6798Эксплойта нет | Marvell QConvergeConsole deleteAppFile Directory Traversal Arbitrary File Deletion Vulnerabilitymarvell · qconvergeconsole · CWE-22 | Критическая9,1 | — | 1,4 % | 7 июл. 2025 г. |
36Наблюдать | CVE-2025-6805Эксплойта нет | Marvell QConvergeConsole deleteEventLogFile Directory Traversal Arbitrary File Deletion Vulnerabilitymarvell · qconvergeconsole · CWE-22 | Критическая9,1 | — | 1,2 % | 7 июл. 2025 г. |
35Наблюдать | CVE-2020-5805Эксплойта нет | In Marvell QConvergeConsole GUI <= 5.5.0.74, credentials are stored in cleartext in tomcat-users.xml.marvell · qconvergeconslole gui · CWE-312 | Высокая8,8 | — | 0,9 % | 8 янв. 2021 г. |
33Наблюдать | CVE-2020-5803Эксплойта нет | Relative Path Traversal in Marvell QConvergeConsole GUI 5.5.0.74 allows a remote, authenticated attacker to delete arbitrary files on disk amarvell · qconvergeconsole · CWE-22 | Высокая8,1 | — | 1,7 % | 18 дек. 2020 г. |
33Наблюдать | CVE-2020-5804Эксплойта нет | Marvell QConvergeConsole GUI <= 5.5.0.74 is affected by a path traversal vulnerability.marvell · qconvergeconslole gui · CWE-22 | Высокая8,1 | — | 1,7 % | 8 янв. 2021 г. |
31Наблюдать | CVE-2020-15641Эксплойта нет | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Marvell QConvergeConsole 5.5.0.64.marvell · qconvergeconsole · CWE-22 | Высокая7,5 | — | 3,2 % | 25 авг. 2020 г. |
31Наблюдать | CVE-2020-15640Эксплойта нет | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Marvell QConvergeConsole 5.5.0.64.marvell · qconvergeconsole · CWE-22 | Высокая7,5 | — | 3,2 % | 25 авг. 2020 г. |
31Наблюдать | CVE-2015-5738Эксплойта нет | The RSA-CRT implementation in the Cavium Software Development Kit (SDK) 2.x, when used on OCTEON II CN6xxx Hardware on Linux to support TLS marvell · software development kit · CWE-200 | Высокая7,5 | — | 2,4 % | 26 июл. 2016 г. |
30Наблюдать | CVE-2025-6797Эксплойта нет | Marvell QConvergeConsole getFileUploadBytes Directory Traversal Information Disclosure Vulnerabilitymarvell · qconvergeconsole · CWE-22 | Высокая7,5 | — | 1,3 % | 7 июл. 2025 г. |
- CVE-2020-1564353В плане
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole 5.5.0.64.
ВысокаяCVSS 8,8Эксплойта нетEPSS 59 %marvell · qconvergeconsole25 авг. 2020 г.
- CVE-2025-679342В плане
Marvell QConvergeConsole QLogicDownloadImpl Directory Traversal Arbitrary File Deletion and Information Disclosure Vulnerability
КритическаяCVSS 9,4Готовый эксплойтEPSS 18 %marvell · qconvergeconsole7 июл. 2025 г.
- CVE-2020-1563942В плане
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole 5.5.0.64.
КритическаяCVSS 9,8Эксплойта нетEPSS 12 %marvell · qconvergeconsole25 авг. 2020 г.
- CVE-2019-1358140В плане
An issue was discovered in Marvell 88W8688 Wi-Fi firmware before version p52, as used on Tesla Model S/X vehicles manufactured before March
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %marvell · 88w8688 firmware15 нояб. 2019 г.
- CVE-2019-1358240В плане
An issue was discovered in Marvell 88W8688 Wi-Fi firmware before version p52, as used on Tesla Model S/X vehicles manufactured before March
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %marvell · 88w8688 firmware15 нояб. 2019 г.
- CVE-2008-459440В плане
Unspecified vulnerability in the SNMPv3 component in Linksys WAP4400N firmware 1.2.14 on the Marvell Semiconductor 88W8361P-BEM1 chipset has
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %linksys · wap400n17 окт. 2008 г.
- CVE-2025-679439Наблюдать
Marvell QConvergeConsole saveAsText Directory Traversal Remote Code Execution Vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %marvell · qconvergeconsole7 июл. 2025 г.
- CVE-2025-680239Наблюдать
Marvell QConvergeConsole getFileFromURL Unrestricted File Upload Remote Code Execution Vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %marvell · qconvergeconsole7 июл. 2025 г.
- CVE-2020-1564538Наблюдать
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole 5.5.0.64.
ВысокаяCVSS 8,8Эксплойта нетEPSS 11 %marvell · qconvergeconsole25 авг. 2020 г.
- CVE-2020-1738738Наблюдать
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole 5.5.0.64.
ВысокаяCVSS 8,8Эксплойта нетEPSS 10 %marvell · qconvergeconsole25 авг. 2020 г.
- CVE-2020-1738938Наблюдать
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole 5.5.0.64.
ВысокаяCVSS 8,8Эксплойта нетEPSS 10 %marvell · qconvergeconsole25 авг. 2020 г.
- CVE-2020-1564438Наблюдать
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole 5.5.0.64.
ВысокаяCVSS 8,8Эксплойта нетEPSS 9 %marvell · qconvergeconsole25 авг. 2020 г.
- CVE-2020-1738837Наблюдать
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole 5.5.0.64.
ВысокаяCVSS 8,8Эксплойта нетEPSS 8 %marvell · qconvergeconsole25 авг. 2020 г.
- CVE-2020-1564237Наблюдать
This vulnerability allows remote attackers to execute arbitrary code on affected installations of installations of Marvell QConvergeConsole
ВысокаяCVSS 8,8Эксплойта нетEPSS 7 %marvell · qconvergeconsole25 авг. 2020 г.
- CVE-2019-649637Наблюдать
The ThreadX-based firmware on Marvell Avastar Wi-Fi devices, models 88W8787, 88W8797, 88W8801, 88W8897, and 88W8997, allows remote attackers
ВысокаяCVSS 8,8Эксплойта нетEPSS 7 %marvell · 88w8787 firmware20 янв. 2019 г.
- CVE-2025-842637Наблюдать
Marvell QConvergeConsole compressConfigFiles Directory Traversal Information Disclosure and Denial-of-Service Vulnerability
КритическаяCVSS 9,4Эксплойта нетEPSS 1 %marvell · qconvergeconsole31 июл. 2025 г.
- CVE-2025-679836Наблюдать
Marvell QConvergeConsole deleteAppFile Directory Traversal Arbitrary File Deletion Vulnerability
КритическаяCVSS 9,1Эксплойта нетEPSS 1 %marvell · qconvergeconsole7 июл. 2025 г.
- CVE-2025-680536Наблюдать
Marvell QConvergeConsole deleteEventLogFile Directory Traversal Arbitrary File Deletion Vulnerability
КритическаяCVSS 9,1Эксплойта нетEPSS 1 %marvell · qconvergeconsole7 июл. 2025 г.
- CVE-2020-580535Наблюдать
In Marvell QConvergeConsole GUI <= 5.5.0.74, credentials are stored in cleartext in tomcat-users.xml.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %marvell · qconvergeconslole gui8 янв. 2021 г.
- CVE-2020-580333Наблюдать
Relative Path Traversal in Marvell QConvergeConsole GUI 5.5.0.74 allows a remote, authenticated attacker to delete arbitrary files on disk a
ВысокаяCVSS 8,1Эксплойта нетEPSS 2 %marvell · qconvergeconsole18 дек. 2020 г.
- CVE-2020-580433Наблюдать
Marvell QConvergeConsole GUI <= 5.5.0.74 is affected by a path traversal vulnerability.
ВысокаяCVSS 8,1Эксплойта нетEPSS 2 %marvell · qconvergeconslole gui8 янв. 2021 г.
- CVE-2020-1564131Наблюдать
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Marvell QConvergeConsole 5.5.0.64.
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %marvell · qconvergeconsole25 авг. 2020 г.
- CVE-2020-1564031Наблюдать
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Marvell QConvergeConsole 5.5.0.64.
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %marvell · qconvergeconsole25 авг. 2020 г.
- CVE-2015-573831Наблюдать
The RSA-CRT implementation in the Cavium Software Development Kit (SDK) 2.x, when used on OCTEON II CN6xxx Hardware on Linux to support TLS
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %marvell · software development kit26 июл. 2016 г.
- CVE-2025-679730Наблюдать
Marvell QConvergeConsole getFileUploadBytes Directory Traversal Information Disclosure Vulnerability
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %marvell · qconvergeconsole7 июл. 2025 г.