Записи waterfall-security
17 опубликованных записей вендора waterfall-security.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 7
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')12
- CWE-23 Relative Path Traversal3
- CWE-125 Out-of-bounds Read1
- CWE-288 Authentication Bypass Using an Alternate Path or Channel1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
17 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
37Наблюдать | CVE-2025-41274Эксплойта нет | Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the waterfall-security · wf-500 firmware · CWE-78 | Критическая9,3 | — | 1,4 % | 29 мая 2026 г. |
37Наблюдать | CVE-2025-41275Эксплойта нет | Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the waterfall-security · wf-500 firmware · CWE-78 | Критическая9,3 | — | 1,4 % | 29 мая 2026 г. |
37Наблюдать | CVE-2025-41276Эксплойта нет | Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the waterfall-security · wf-500 firmware · CWE-78 | Критическая9,3 | — | 1,4 % | 29 мая 2026 г. |
37Наблюдать | CVE-2025-41277Эксплойта нет | Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the waterfall-security · wf-500 firmware · CWE-78 | Критическая9,3 | — | 1,4 % | 29 мая 2026 г. |
37Наблюдать | CVE-2025-41272Эксплойта нет | Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the waterfall-security · wf-500 firmware · CWE-78 | Критическая9,3 | — | 1,4 % | 29 мая 2026 г. |
37Наблюдать | CVE-2025-41269Эксплойта нет | Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the waterfall-security · wf-500 firmware · CWE-78 | Критическая9,3 | — | 1,4 % | 29 мая 2026 г. |
37Наблюдать | CVE-2025-41270Эксплойта нет | Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the waterfall-security · wf-500 firmware · CWE-78 | Критическая9,3 | — | 1,4 % | 29 мая 2026 г. |
37Наблюдать | CVE-2025-41273Эксплойта нет | Nozomi Networks Labs identified a CWE-288: Authentication Bypass Using an Alternate Path or Channel in the Console WebUI in Waterfall WF-500waterfall-security · wf-500 firmware · CWE-288 | Критическая9,3 | — | 0,4 % | 29 мая 2026 г. |
35Наблюдать | CVE-2025-41268Эксплойта нет | Nozomi Networks Labs identified a CWE-23: Relative Path Traversal in the Administration WebUI in Waterfall WF-500 TX and RX Hosts in versionwaterfall-security · wf-500 firmware · CWE-23 | Высокая8,8 | — | 0,4 % | 29 мая 2026 г. |
34Наблюдать | CVE-2025-41265Эксплойта нет | Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the waterfall-security · wf-500 firmware · CWE-78 | Высокая8,6 | — | 0,9 % | 29 мая 2026 г. |
34Наблюдать | CVE-2025-41266Эксплойта нет | Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the waterfall-security · wf-500 firmware · CWE-78 | Высокая8,6 | — | 0,9 % | 29 мая 2026 г. |
34Наблюдать | CVE-2025-41267Эксплойта нет | Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the waterfall-security · wf-500 firmware · CWE-78 | Высокая8,5 | — | 0,9 % | 29 мая 2026 г. |
34Наблюдать | CVE-2025-41279Эксплойта нет | Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the waterfall-security · wf-500 firmware · CWE-78 | Высокая8,6 | — | 0,9 % | 29 мая 2026 г. |
34Наблюдать | CVE-2025-41271Эксплойта нет | Nozomi Networks Labs identified a CWE-23: Relative Path Traversal in the Console WebUI in Waterfall WF-500 TX and RX Hosts in version 7.9.1.waterfall-security · wf-500 firmware · CWE-23 | Высокая8,7 | — | 0,4 % | 29 мая 2026 г. |
30Наблюдать | CVE-2025-41281Эксплойта нет | Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in Watewaterfall-security · wf-500 firmware · CWE-78 | Высокая7,5 | — | 0,5 % | 29 мая 2026 г. |
30Наблюдать | CVE-2025-41280Эксплойта нет | Nozomi Networks Labs identified a CWE-23: Relative Path Traversal (Zip Slip) in Waterfall WF-500 RX Host in version 7.9.1.0 R2502171040 thatwaterfall-security · wf-500 firmware · CWE-23 | Высокая7,5 | — | 0,1 % | 29 мая 2026 г. |
30Наблюдать | CVE-2025-41278Эксплойта нет | Nozomi Networks Labs identified a CWE-125: Out-of-bounds Read in Waterfall WF-500 RX Host in version 7.10.0.0 R2601141040 that allows attackwaterfall-security · wf-500 firmware · CWE-125 | Высокая7,5 | — | 0,1 % | 29 мая 2026 г. |
- CVE-2025-4127437Наблюдать
Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the
КритическаяCVSS 9,3Эксплойта нетEPSS 1 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4127537Наблюдать
Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the
КритическаяCVSS 9,3Эксплойта нетEPSS 1 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4127637Наблюдать
Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the
КритическаяCVSS 9,3Эксплойта нетEPSS 1 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4127737Наблюдать
Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the
КритическаяCVSS 9,3Эксплойта нетEPSS 1 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4127237Наблюдать
Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the
КритическаяCVSS 9,3Эксплойта нетEPSS 1 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4126937Наблюдать
Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the
КритическаяCVSS 9,3Эксплойта нетEPSS 1 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4127037Наблюдать
Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the
КритическаяCVSS 9,3Эксплойта нетEPSS 1 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4127337Наблюдать
Nozomi Networks Labs identified a CWE-288: Authentication Bypass Using an Alternate Path or Channel in the Console WebUI in Waterfall WF-500
КритическаяCVSS 9,3Эксплойта нетEPSS 0 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4126835Наблюдать
Nozomi Networks Labs identified a CWE-23: Relative Path Traversal in the Administration WebUI in Waterfall WF-500 TX and RX Hosts in version
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4126534Наблюдать
Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the
ВысокаяCVSS 8,6Эксплойта нетEPSS 1 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4126634Наблюдать
Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the
ВысокаяCVSS 8,6Эксплойта нетEPSS 1 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4126734Наблюдать
Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the
ВысокаяCVSS 8,5Эксплойта нетEPSS 1 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4127934Наблюдать
Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the
ВысокаяCVSS 8,6Эксплойта нетEPSS 1 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4127134Наблюдать
Nozomi Networks Labs identified a CWE-23: Relative Path Traversal in the Console WebUI in Waterfall WF-500 TX and RX Hosts in version 7.9.1.
ВысокаяCVSS 8,7Эксплойта нетEPSS 0 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4128130Наблюдать
Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in Wate
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4128030Наблюдать
Nozomi Networks Labs identified a CWE-23: Relative Path Traversal (Zip Slip) in Waterfall WF-500 RX Host in version 7.9.1.0 R2502171040 that
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %waterfall-security · wf-500 firmware29 мая 2026 г.
- CVE-2025-4127830Наблюдать
Nozomi Networks Labs identified a CWE-125: Out-of-bounds Read in Waterfall WF-500 RX Host in version 7.10.0.0 R2601141040 that allows attack
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %waterfall-security · wf-500 firmware29 мая 2026 г.