Записи Thomson
9 опубликованных записей вендора thomson.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
9 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
31Наблюдать | CVE-2006-0947Proof of concept | Thomson SpeedTouch modem running firmware 5.3.2.6.0 allows remote attackers to create users that cannot be deleted via scripting code in thethomson · speedtouch | Высокая7,5 | — | 2,7 % | 28 февр. 2006 г. |
31Наблюдать | CVE-2004-0641Proof of concept | Thomson SpeedTouch 510 ADSL Router with firmware GV8BAA3.270, and possibly earlier versions, generates predictable TCP Initial Sequence Numbthomson · speedtouch | Высокая7,5 | — | 2,6 % | 5 авг. 2004 г. |
31Наблюдать | CVE-2005-0494Proof of concept | The RgSecurity form in the HTTP server for the Thomson TCW690 cable modem running firmware 2.1 and software ST42.03.0a does not properly valthomson · thomson cable modem | Высокая7,5 | — | 2,6 % | 21 февр. 2005 г. |
28Наблюдать | CVE-2014-4716Proof of concept | Cross-site request forgery (CSRF) vulnerability in Thomson TWG87OUIR allows remote attackers to hijack the authentication of unspecified victhomson · twg87ouir · CWE-352 | Средняя6,8 | — | 2,3 % | 3 июл. 2014 г. |
22Наблюдать | CVE-2007-4553Proof of concept | The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) via an INVITE message thomson · st 2030 sip phone | Средняя5,0 | — | 8,2 % | 27 авг. 2007 г. |
21Наблюдать | CVE-2003-1085Proof of concept | The HTTP server in the Thomson TWC305, TWC315, and TCW690 cable modem ST42.03.0a allows remote attackers to cause a denial of service (unstathomson · tcm cable modem | Средняя5,0 | — | 4,9 % | 31 дек. 2003 г. |
21Наблюдать | CVE-2007-4753Эксплойта нет | The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) via (1) an empty SIP mthomson · st 2030 sip phone | Средняя5,0 | — | 1,7 % | 7 сент. 2007 г. |
18Наблюдать | CVE-2006-0946Proof of concept | Cross-site scripting (XSS) vulnerability in Thomson SpeedTouch modems running firmware 5.3.2.6.0 allows remote attackers to inject arbitrarythomson · speedtouch | Средняя4,3 | — | 2,0 % | 28 февр. 2006 г. |
17Наблюдать | CVE-2007-6003Proof of concept | Cross-site scripting (XSS) vulnerability in cgi/b/ic/connect in the Thomson SpeedTouch 716 with firmware 5.4.0.14 allows remote attackers tothomson · speedtouch · CWE-79 | Средняя4,3 | — | 1,2 % | 15 нояб. 2007 г. |
- CVE-2006-094731Наблюдать
Thomson SpeedTouch modem running firmware 5.3.2.6.0 allows remote attackers to create users that cannot be deleted via scripting code in the
ВысокаяCVSS 7,5Proof of conceptEPSS 3 %thomson · speedtouch28 февр. 2006 г.
- CVE-2004-064131Наблюдать
Thomson SpeedTouch 510 ADSL Router with firmware GV8BAA3.270, and possibly earlier versions, generates predictable TCP Initial Sequence Numb
ВысокаяCVSS 7,5Proof of conceptEPSS 3 %thomson · speedtouch5 авг. 2004 г.
- CVE-2005-049431Наблюдать
The RgSecurity form in the HTTP server for the Thomson TCW690 cable modem running firmware 2.1 and software ST42.03.0a does not properly val
ВысокаяCVSS 7,5Proof of conceptEPSS 3 %thomson · thomson cable modem21 февр. 2005 г.
- CVE-2014-471628Наблюдать
Cross-site request forgery (CSRF) vulnerability in Thomson TWG87OUIR allows remote attackers to hijack the authentication of unspecified vic
СредняяCVSS 6,8Proof of conceptEPSS 2 %thomson · twg87ouir3 июл. 2014 г.
- CVE-2007-455322Наблюдать
The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) via an INVITE message
СредняяCVSS 5,0Proof of conceptEPSS 8 %thomson · st 2030 sip phone27 авг. 2007 г.
- CVE-2003-108521Наблюдать
The HTTP server in the Thomson TWC305, TWC315, and TCW690 cable modem ST42.03.0a allows remote attackers to cause a denial of service (unsta
СредняяCVSS 5,0Proof of conceptEPSS 5 %thomson · tcm cable modem31 дек. 2003 г.
- CVE-2007-475321Наблюдать
The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) via (1) an empty SIP m
СредняяCVSS 5,0Эксплойта нетEPSS 2 %thomson · st 2030 sip phone7 сент. 2007 г.
- CVE-2006-094618Наблюдать
Cross-site scripting (XSS) vulnerability in Thomson SpeedTouch modems running firmware 5.3.2.6.0 allows remote attackers to inject arbitrary
СредняяCVSS 4,3Proof of conceptEPSS 2 %thomson · speedtouch28 февр. 2006 г.
- CVE-2007-600317Наблюдать
Cross-site scripting (XSS) vulnerability in cgi/b/ic/connect in the Thomson SpeedTouch 716 with firmware 5.4.0.14 allows remote attackers to
СредняяCVSS 4,3Proof of conceptEPSS 1 %thomson · speedtouch15 нояб. 2007 г.