Записи Technicolor
43 опубликованных записей вендора technicolor.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 1 · 2,3 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-522 Insufficiently Protected Credentials9
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')7
- CWE-80 Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)6
- CWE-400 Uncontrolled Resource Consumption3
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')2
- CWE-352 Cross-Site Request Forgery (CSRF)2
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
43 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
42В плане | CVE-2019-19494Готовый эксплойт | Broadcom based cable modems across multiple vendors are vulnerable to a buffer overflow, which allows a remote attacker to execute arbitrarysagemcom · f\@st 3890 firmware · CWE-120 | Высокая8,8 | — | 23,1 % | 9 янв. 2020 г. |
41В плане | CVE-2017-5135Proof of concept | Certain Technicolor devices have an SNMP access-control bypass, possibly involving an ISP customization in some cases.technicolor · dpc3928sl firmware | Критическая9,1 | — | 17,5 % | 27 апр. 2017 г. |
40В плане | CVE-2019-19495Эксплойта нет | The web interface on the Technicolor TC7230 STEB 01.25 is vulnerable to DNS rebinding, which allows a remote attacker to configure the cabletechnicolor · tc7230 steb firmware · CWE-20 | Критическая9,8 | — | 4,3 % | 8 янв. 2020 г. |
40В плане | CVE-2017-14127Эксплойта нет | Command Injection in the Ping Module in the Web Interface on Technicolor TD5336 OI_Fw_v7 devices allows remote attackers to execute arbitrartechnicolor · td5336 firmware · CWE-78 | Критическая9,8 | — | 2,7 % | 4 сент. 2017 г. |
39Наблюдать | CVE-2018-20381Эксплойта нет | Technicolor DPC2320 dpc2300r2-v202r1244101-150420a-v6 devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.technicolor · dpc2320 firmware | Критическая9,8 | — | 1,6 % | 23 дек. 2018 г. |
39Наблюдать | CVE-2018-20393Эксплойта нет | Technicolor CGA0111 CGA0111E-ES-13-E23E-c8000r5712-170217-0829-TRU, CWA0101 CWA0101E-A23E-c7000r5712-170315-SKC, DPC3928SL D3928SL-PSIP-13-Atechnicolor · cga0111 firmware | Критическая9,8 | — | 1,6 % | 23 дек. 2018 г. |
39Наблюдать | CVE-2018-20394Эксплойта нет | Thomson DWG849 STC0.01.16, DWG850-4 ST9C.05.25, DWG855 ST80.20.26, and TWG870 STB2.01.36 devices allow remote attackers to discover credentitechnicolor · dwg849 firmware · CWE-522 | Критическая9,8 | — | 1,5 % | 23 дек. 2018 г. |
39Наблюдать | CVE-2018-20438Эксплойта нет | Technicolor TC7110.AR STD3.38.03 devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.1.4.1.2863.205.10.1.30.4.1.14.1.3.technicolor · tc7110.ar firmware · CWE-522 | Критическая9,8 | — | 1,4 % | 25 дек. 2018 г. |
39Наблюдать | CVE-2018-20443Эксплойта нет | Technicolor TC7200.d1I TC7200.d1IE-N23E-c7000r5712-170406-HAT devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.1.4.1technicolor · tc7200.d1i firmware · CWE-522 | Критическая9,8 | — | 1,4 % | 25 дек. 2018 г. |
39Наблюдать | CVE-2018-20442Эксплойта нет | Technicolor TC7110.B STC8.62.02 devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.1.4.1.2863.205.10.1.30.4.1.14.1.3.3technicolor · tc7110.b firmware · CWE-522 | Критическая9,8 | — | 1,4 % | 25 дек. 2018 г. |
39Наблюдать | CVE-2018-20441Эксплойта нет | Technicolor TC7200.TH2v2 SC05.00.22 devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.1.4.1.2863.205.10.1.30.4.1.14.1technicolor · tc7200.th2v2 firmware · CWE-522 | Критическая9,8 | — | 1,4 % | 25 дек. 2018 г. |
39Наблюдать | CVE-2018-20440Эксплойта нет | Technicolor CWA0101 CWA0101E-A23E-c7000r5712-170315-SKC devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.1.4.1.4413.technicolor · cwa0101 firmware · CWE-522 | Критическая9,8 | — | 1,4 % | 25 дек. 2018 г. |
39Наблюдать | CVE-2018-20439Эксплойта нет | Technicolor DPC3928SL D3928SL-PSIP-13-A010-c3420r55105-170214a devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.1.4.technicolor · dpc3928sl firmware · CWE-522 | Критическая9,8 | — | 1,3 % | 25 дек. 2018 г. |
39Наблюдать | CVE-2018-20444Эксплойта нет | Technicolor CGA0111 CGA0111E-ES-13-E23E-c8000r5712-170217-0829-TRU devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.technicolor · cga0111 firmware · CWE-522 | Критическая9,8 | — | 1,3 % | 25 дек. 2018 г. |
39Наблюдать | CVE-2020-10376Эксплойта нет | Technicolor TC7337NET 08.89.17.23.03 devices allow remote attackers to discover passwords by sniffing the network for an "Authorization: Bastechnicolor · tc7337net firmware · CWE-319 | Критическая9,8 | — | 1,1 % | 11 мар. 2020 г. |
35Наблюдать | CVE-2014-1677Proof of concept | Technicolor TC7200 with firmware STD6.01.12 could allow remote attackers to obtain sensitive information.technicolor · tc7200 firmware · CWE-200 | Высокая7,5 | — | 17,7 % | 3 апр. 2017 г. |
35Наблюдать | CVE-2023-47352Эксплойта нет | Technicolor TC8715D devices have predictable default WPA2 security passwords.technicolor · tc8715d firmware | Высокая8,8 | — | 0,4 % | 22 янв. 2024 г. |
33Наблюдать | CVE-2019-18396Proof of concept | An issue was discovered in certain Oi third-party firmware that may be installed on Technicolor TD5130v2 devices.technicolor · td5130v2 firmware · CWE-78 | Высокая7,2 | — | 16,2 % | 31 окт. 2019 г. |
33Наблюдать | CVE-2014-9144Proof of concept | Technicolor Router TD5130 with firmware 2.05.C29GV allows remote attackers to execute arbitrary commands via shell metacharacters in the pintechnicolor · td5130 router firmware · CWE-77 | Высокая7,5 | — | 8,6 % | 5 дек. 2014 г. |
33Наблюдать | CVE-2016-7454Proof of concept | CSRF vulnerability on Technicolor TC dpc3941T (formerly Cisco dpc3941T) devices with firmware dpc3941-P20-18-v303r20421733-160413a-CMCST alltechnicolor · xfinity gateway router dpc3941t firmware · CWE-352 | Высокая8,0 | — | 3,3 % | 16 дек. 2016 г. |
31Наблюдать | CVE-2024-3780Эксплойта нет | Information exposure vulnerability on Technicolor CGA2121technicolor · cga2121 · CWE-200 | Высокая7,8 | — | 0,2 % | 15 апр. 2024 г. |
30Наблюдать | CVE-2011-4506Эксплойта нет | The UPnP IGD implementation on the Thomson (aka Technicolor) TG585 with firmware 7.x before 7.4.3.2 allows remote attackers to establish arbtechnicolor · tg585 router firmware · CWE-16 | Высокая7,5 | — | 1,3 % | 22 нояб. 2011 г. |
30Наблюдать | CVE-2020-11449Эксплойта нет | An issue was discovered on Technicolor TC7337 8.89.17 devices.technicolor · tc7337 firmware · CWE-522 | Высокая7,5 | — | 1,2 % | 1 апр. 2020 г. |
28Наблюдать | CVE-2023-31808Эксплойта нет | Technicolor TG670 10.5.N.9 devices contain multiple accounts with hard-coded passwords.technicolor · tg670 firmware · CWE-798 | Высокая7,2 | — | 0,6 % | 19 сент. 2023 г. |
27Наблюдать | CVE-2014-0621Proof of concept | Multiple cross-site request forgery (CSRF) vulnerabilities in Technicolor (formerly Thomson) TC7200 STD6.01.12 allow remote attackers to hijtechnicolor · tc7200 firmware · CWE-352 | Средняя6,8 | — | 1,0 % | 8 янв. 2014 г. |
- CVE-2019-1949442В плане
Broadcom based cable modems across multiple vendors are vulnerable to a buffer overflow, which allows a remote attacker to execute arbitrary
ВысокаяCVSS 8,8Готовый эксплойтEPSS 23 %sagemcom · f\@st 3890 firmware9 янв. 2020 г.
- CVE-2017-513541В плане
Certain Technicolor devices have an SNMP access-control bypass, possibly involving an ISP customization in some cases.
КритическаяCVSS 9,1Proof of conceptEPSS 18 %technicolor · dpc3928sl firmware27 апр. 2017 г.
- CVE-2019-1949540В плане
The web interface on the Technicolor TC7230 STEB 01.25 is vulnerable to DNS rebinding, which allows a remote attacker to configure the cable
КритическаяCVSS 9,8Эксплойта нетEPSS 4 %technicolor · tc7230 steb firmware8 янв. 2020 г.
- CVE-2017-1412740В плане
Command Injection in the Ping Module in the Web Interface on Technicolor TD5336 OI_Fw_v7 devices allows remote attackers to execute arbitrar
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %technicolor · td5336 firmware4 сент. 2017 г.
- CVE-2018-2038139Наблюдать
Technicolor DPC2320 dpc2300r2-v202r1244101-150420a-v6 devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %technicolor · dpc2320 firmware23 дек. 2018 г.
- CVE-2018-2039339Наблюдать
Technicolor CGA0111 CGA0111E-ES-13-E23E-c8000r5712-170217-0829-TRU, CWA0101 CWA0101E-A23E-c7000r5712-170315-SKC, DPC3928SL D3928SL-PSIP-13-A
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %technicolor · cga0111 firmware23 дек. 2018 г.
- CVE-2018-2039439Наблюдать
Thomson DWG849 STC0.01.16, DWG850-4 ST9C.05.25, DWG855 ST80.20.26, and TWG870 STB2.01.36 devices allow remote attackers to discover credenti
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %technicolor · dwg849 firmware23 дек. 2018 г.
- CVE-2018-2043839Наблюдать
Technicolor TC7110.AR STD3.38.03 devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.1.4.1.2863.205.10.1.30.4.1.14.1.3.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %technicolor · tc7110.ar firmware25 дек. 2018 г.
- CVE-2018-2044339Наблюдать
Technicolor TC7200.d1I TC7200.d1IE-N23E-c7000r5712-170406-HAT devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.1.4.1
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %technicolor · tc7200.d1i firmware25 дек. 2018 г.
- CVE-2018-2044239Наблюдать
Technicolor TC7110.B STC8.62.02 devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.1.4.1.2863.205.10.1.30.4.1.14.1.3.3
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %technicolor · tc7110.b firmware25 дек. 2018 г.
- CVE-2018-2044139Наблюдать
Technicolor TC7200.TH2v2 SC05.00.22 devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.1.4.1.2863.205.10.1.30.4.1.14.1
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %technicolor · tc7200.th2v2 firmware25 дек. 2018 г.
- CVE-2018-2044039Наблюдать
Technicolor CWA0101 CWA0101E-A23E-c7000r5712-170315-SKC devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.1.4.1.4413.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %technicolor · cwa0101 firmware25 дек. 2018 г.
- CVE-2018-2043939Наблюдать
Technicolor DPC3928SL D3928SL-PSIP-13-A010-c3420r55105-170214a devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.1.4.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %technicolor · dpc3928sl firmware25 дек. 2018 г.
- CVE-2018-2044439Наблюдать
Technicolor CGA0111 CGA0111E-ES-13-E23E-c8000r5712-170217-0829-TRU devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %technicolor · cga0111 firmware25 дек. 2018 г.
- CVE-2020-1037639Наблюдать
Technicolor TC7337NET 08.89.17.23.03 devices allow remote attackers to discover passwords by sniffing the network for an "Authorization: Bas
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %technicolor · tc7337net firmware11 мар. 2020 г.
- CVE-2014-167735Наблюдать
Technicolor TC7200 with firmware STD6.01.12 could allow remote attackers to obtain sensitive information.
ВысокаяCVSS 7,5Proof of conceptEPSS 18 %technicolor · tc7200 firmware3 апр. 2017 г.
- CVE-2023-4735235Наблюдать
Technicolor TC8715D devices have predictable default WPA2 security passwords.
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %technicolor · tc8715d firmware22 янв. 2024 г.
- CVE-2019-1839633Наблюдать
An issue was discovered in certain Oi third-party firmware that may be installed on Technicolor TD5130v2 devices.
ВысокаяCVSS 7,2Proof of conceptEPSS 16 %technicolor · td5130v2 firmware31 окт. 2019 г.
- CVE-2014-914433Наблюдать
Technicolor Router TD5130 with firmware 2.05.C29GV allows remote attackers to execute arbitrary commands via shell metacharacters in the pin
ВысокаяCVSS 7,5Proof of conceptEPSS 9 %technicolor · td5130 router firmware5 дек. 2014 г.
- CVE-2016-745433Наблюдать
CSRF vulnerability on Technicolor TC dpc3941T (formerly Cisco dpc3941T) devices with firmware dpc3941-P20-18-v303r20421733-160413a-CMCST all
ВысокаяCVSS 8,0Proof of conceptEPSS 3 %technicolor · xfinity gateway router dpc3941t firmware16 дек. 2016 г.
- CVE-2024-378031Наблюдать
Information exposure vulnerability on Technicolor CGA2121
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %technicolor · cga212115 апр. 2024 г.
- CVE-2011-450630Наблюдать
The UPnP IGD implementation on the Thomson (aka Technicolor) TG585 with firmware 7.x before 7.4.3.2 allows remote attackers to establish arb
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %technicolor · tg585 router firmware22 нояб. 2011 г.
- CVE-2020-1144930Наблюдать
An issue was discovered on Technicolor TC7337 8.89.17 devices.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %technicolor · tc7337 firmware1 апр. 2020 г.
- CVE-2023-3180828Наблюдать
Technicolor TG670 10.5.N.9 devices contain multiple accounts with hard-coded passwords.
ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %technicolor · tg670 firmware19 сент. 2023 г.
- CVE-2014-062127Наблюдать
Multiple cross-site request forgery (CSRF) vulnerabilities in Technicolor (formerly Thomson) TC7200 STD6.01.12 allow remote attackers to hij
СредняяCVSS 6,8Proof of conceptEPSS 1 %technicolor · tc7200 firmware8 янв. 2014 г.