Alcatel-Lucent kayıtları
alcatel-lucent üreticisine ait 27 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-352 Cross-Site Request Forgery (CSRF)2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-264 Permissions, Privileges, and Access Controls2
- CWE-367 Time-of-check Time-of-use (TOCTOU) Race Condition1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
27 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
43Planlayın | CVE-2016-9796Kavram kanıtı | Alcatel-Lucent OmniVista 8770 2.0 through 3.0 exposes different ORBs interfaces, which can be queried using the GIOP protocol on TCP port 30alcatel-lucent · omnivista 8770 network management system · CWE-264 | Kritik9,8 | — | %13,4 | 3 Ara 2016 |
43Planlayın | CVE-2008-1331Kavram kanıtı | cgi-data/FastJSData.cgi in OmniPCX Office with Internet Access services OXO210 before 210/091.001, OXO600 before 610/014.001, and other versalcatel-lucent · omnipcx office · CWE-20 | Kritik10,0 | — | %8,8 | 2 Nis 2008 |
42Planlayın | CVE-2008-4383İstismar yok | Stack-based buffer overflow in the Agranet-Emweb embedded management web server in Alcatel OmniSwitch OS7000, OS6600, OS6800, OS6850, and OSalcatel · aos · CWE-119 | Kritik10,0 | — | %8,2 | 3 Eki 2008 |
41Planlayın | CVE-2002-1691İstismar yok | Alcatel OmniPCX 4400 installs known user accounts and passwords in the /etc/password file by default, which allows remote attackers to gain alcatel-lucent · omnipcx | Kritik10,0 | — | %3,6 | 31 Ara 2002 |
41Planlayın | CVE-2007-1822İstismar yok | Alcatel-Lucent Lucent Technologies voice mail systems allow remote attackers to retrieve or remove messages, or reconfigure mailboxes, by spalcatel-lucent · voice mail system | Kritik10,0 | — | %3,1 | 2 Nis 2007 |
35İzleyin | CVE-2007-5361İstismar yok | The Communication Server in Alcatel-Lucent OmniPCX Enterprise 7.1 and earlier caches an IP address during a TFTP request from an IP Touch phalcatel-lucent · omnipcx | Yüksek8,5 | — | %2,4 | 20 Kas 2007 |
32İzleyin | CVE-2007-0931İstismar yok | Heap-based buffer overflow in the management interfaces in (1) Aruba Mobility Controllers 200, 800, 2400, and 6000 and (2) Alcatel-Lucent Omalcatel-lucent · omniaccess wireless | Yüksek7,5 | — | %6,1 | 14 Şub 2007 |
31İzleyin | CVE-2007-0932İstismar yok | The (1) Aruba Mobility Controllers 200, 600, 2400, and 6000 and (2) Alcatel-Lucent OmniAccess Wireless 43xx and 6000 do not properly implemealcatel-lucent · omniaccess wireless · CWE-264 | Yüksek7,5 | — | %2,3 | 14 Şub 2007 |
31İzleyin | CVE-2015-6498İstismar yok | Alcatel-Lucent Home Device Manager before 4.1.10, 4.2.x before 4.2.2 allows remote attackers to spoof and make calls as target devices.alcatel-lucent · home device manager · CWE-254 | Yüksek7,5 | — | %2,2 | 9 Ağu 2017 |
30İzleyin | CVE-2007-2512İstismar yok | Alcatel-Lucent IP-Touch Telephone running OmniPCX Enterprise 7.0 and later enables the mini switch by default, which allows attackers to gaialcatel-lucent · omnipcx | Yüksek7,5 | — | %1,2 | 7 Haz 2007 |
30İzleyin | CVE-2010-3279İstismar yok | The default configuration of the CCAgent option before 9.0.8.4 in the management server (aka TSA) component in Alcatel-Lucent OmniTouch Contalcatel-lucent · ccagent · CWE-16 | Yüksek7,6 | — | %1,1 | 23 Eyl 2010 |
29İzleyin | CVE-2024-29149İstismar yok | An issue was discovered in Alcatel-Lucent ALE NOE deskphones through 86x8_NOE-R300.1.40.12.4180 and SIP deskphones through 86x8_SIP-R200.1.0CWE-367 | Yüksek7,4 | — | %0,2 | 7 May 2024 |
28İzleyin | CVE-2015-2805Kavram kanıtı | Cross-site request forgery (CSRF) vulnerability in sec/content/sec_asa_users_local_db_add.html in the management web interface in Alcatel-Lualcatel-lucent · omniswitch firmware · CWE-352 | Orta6,8 | — | %3,0 | 16 Haz 2015 |
27İzleyin | CVE-2010-3280İstismar yok | The CCAgent option 9.0.8.4 and earlier in the management server (aka TSA) component in Alcatel-Lucent OmniTouch Contact Center Standard Editalcatel-lucent · ccagent · CWE-200 | Orta6,9 | — | %1,0 | 23 Eyl 2010 |
27İzleyin | CVE-2015-4586İstismar yok | Cross-site request forgery (CSRF) vulnerability in Alcatel-Lucent CellPipe 7130 RG 5Ae.M2013 HOL with firmware 1.0.0.20h.HOL allows remote aalcatel-lucent · cellpipe 7130 rg 5ae.m2013 hol firmware · CWE-352 | Orta6,8 | — | %0,9 | 23 Haz 2015 |
24İzleyin | CVE-2011-0344İstismar yok | Multiple stack-based buffer overflows in unspecified CGI programs in the Unified Maintenance Tool web interface in the embedded web server ialcatel-lucent · omnipcx · CWE-119 | Orta5,8 | — | %2,3 | 8 Mar 2011 |
24İzleyin | CVE-2002-0293İstismar yok | FTP service in Alcatel OmniPCX 4400 allows the "halt" user to gain root privileges by modifying root's .profile file.alcatel-lucent · omnipcx | Orta6,2 | — | %0,3 | 31 May 2002 |
22İzleyin | CVE-2003-1108İstismar yok | The Session Initiation Protocol (SIP) implementation in Alcatel OmniPCX Enterprise 5.0 Lx allows remote attackers to cause a denial of servialcatel-lucent · omnipcx | Orta5,0 | — | %5,0 | 31 Ara 2003 |
22İzleyin | CVE-2010-3281İstismar yok | Stack-based buffer overflow in the HTTP proxy service in Alcatel-Lucent OmniVista 4760 server before R5.1.06.03.c_Patch3 allows remote attacalcatel-lucent · omnivista 4760 server · CWE-119 | Orta5,4 | — | %1,9 | 23 Eyl 2010 |
21İzleyin | CVE-2015-8687İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in the Management Console in Alcatel-Lucent Motive Home Device Manager (HDM) before 4.2 alcatel-lucent · motive home device manager · CWE-79 | Orta5,4 | — | %0,6 | 23 Mar 2017 |
18İzleyin | CVE-2015-2804İstismar yok | The management web interface in Alcatel-Lucent OmniSwitch 6450, 6250, 6850E, 9000E, 6400, and 6855 with firmware before 6.6.4.309.R01 and 6.alcatel-lucent · omniswitch firmware · CWE-200 | Orta4,3 | — | %2,0 | 16 Haz 2015 |
18İzleyin | CVE-2007-5190Kavram kanıtı | Multiple cross-site scripting (XSS) vulnerabilities in Alcatel OmniVista 4760 R4.2 and earlier allow remote attackers to inject arbitrary wealcatel-lucent · omnivista · CWE-79 | Orta4,3 | — | %2,0 | 22 Eki 2007 |
18İzleyin | CVE-2002-0295İstismar yok | Alcatel OmniPCX 4400 installs files with world-writable permissions, which allows local users to reconfigure the system and possibly gain pralcatel-lucent · omnipcx | Orta4,6 | — | %0,3 | 31 May 2002 |
17İzleyin | CVE-2013-4653İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in the signin functionality of ics in MyTeamwork services in Alcatel-Lucent Omnitouch 86alcatel-lucent · omnitouch 8400 instant communications suite · CWE-79 | Orta4,3 | — | %1,3 | 19 Ağu 2013 |
17İzleyin | CVE-2015-4587İstismar yok | Cross-site scripting (XSS) vulnerability in the Alcatel-Lucent CellPipe 7130 router with firmware 1.0.0.20h.HOL allows remote attackers to ialcatel-lucent · cellpipe 7130 router firmware · CWE-79 | Orta4,3 | — | %1,0 | 18 Haz 2015 |
- CVE-2016-979643Planlayın
Alcatel-Lucent OmniVista 8770 2.0 through 3.0 exposes different ORBs interfaces, which can be queried using the GIOP protocol on TCP port 30
KritikCVSS 9,8Kavram kanıtıEPSS %13alcatel-lucent · omnivista 8770 network management system3 Ara 2016
- CVE-2008-133143Planlayın
cgi-data/FastJSData.cgi in OmniPCX Office with Internet Access services OXO210 before 210/091.001, OXO600 before 610/014.001, and other vers
KritikCVSS 10,0Kavram kanıtıEPSS %9alcatel-lucent · omnipcx office2 Nis 2008
- CVE-2008-438342Planlayın
Stack-based buffer overflow in the Agranet-Emweb embedded management web server in Alcatel OmniSwitch OS7000, OS6600, OS6800, OS6850, and OS
KritikCVSS 10,0İstismar yokEPSS %8alcatel · aos3 Eki 2008
- CVE-2002-169141Planlayın
Alcatel OmniPCX 4400 installs known user accounts and passwords in the /etc/password file by default, which allows remote attackers to gain
KritikCVSS 10,0İstismar yokEPSS %4alcatel-lucent · omnipcx31 Ara 2002
- CVE-2007-182241Planlayın
Alcatel-Lucent Lucent Technologies voice mail systems allow remote attackers to retrieve or remove messages, or reconfigure mailboxes, by sp
KritikCVSS 10,0İstismar yokEPSS %3alcatel-lucent · voice mail system2 Nis 2007
- CVE-2007-536135İzleyin
The Communication Server in Alcatel-Lucent OmniPCX Enterprise 7.1 and earlier caches an IP address during a TFTP request from an IP Touch ph
YüksekCVSS 8,5İstismar yokEPSS %2alcatel-lucent · omnipcx20 Kas 2007
- CVE-2007-093132İzleyin
Heap-based buffer overflow in the management interfaces in (1) Aruba Mobility Controllers 200, 800, 2400, and 6000 and (2) Alcatel-Lucent Om
YüksekCVSS 7,5İstismar yokEPSS %6alcatel-lucent · omniaccess wireless14 Şub 2007
- CVE-2007-093231İzleyin
The (1) Aruba Mobility Controllers 200, 600, 2400, and 6000 and (2) Alcatel-Lucent OmniAccess Wireless 43xx and 6000 do not properly impleme
YüksekCVSS 7,5İstismar yokEPSS %2alcatel-lucent · omniaccess wireless14 Şub 2007
- CVE-2015-649831İzleyin
Alcatel-Lucent Home Device Manager before 4.1.10, 4.2.x before 4.2.2 allows remote attackers to spoof and make calls as target devices.
YüksekCVSS 7,5İstismar yokEPSS %2alcatel-lucent · home device manager9 Ağu 2017
- CVE-2007-251230İzleyin
Alcatel-Lucent IP-Touch Telephone running OmniPCX Enterprise 7.0 and later enables the mini switch by default, which allows attackers to gai
YüksekCVSS 7,5İstismar yokEPSS %1alcatel-lucent · omnipcx7 Haz 2007
- CVE-2010-327930İzleyin
The default configuration of the CCAgent option before 9.0.8.4 in the management server (aka TSA) component in Alcatel-Lucent OmniTouch Cont
YüksekCVSS 7,6İstismar yokEPSS %1alcatel-lucent · ccagent23 Eyl 2010
- CVE-2024-2914929İzleyin
An issue was discovered in Alcatel-Lucent ALE NOE deskphones through 86x8_NOE-R300.1.40.12.4180 and SIP deskphones through 86x8_SIP-R200.1.0
YüksekCVSS 7,4İstismar yokEPSS %07 May 2024
- CVE-2015-280528İzleyin
Cross-site request forgery (CSRF) vulnerability in sec/content/sec_asa_users_local_db_add.html in the management web interface in Alcatel-Lu
OrtaCVSS 6,8Kavram kanıtıEPSS %3alcatel-lucent · omniswitch firmware16 Haz 2015
- CVE-2010-328027İzleyin
The CCAgent option 9.0.8.4 and earlier in the management server (aka TSA) component in Alcatel-Lucent OmniTouch Contact Center Standard Edit
OrtaCVSS 6,9İstismar yokEPSS %1alcatel-lucent · ccagent23 Eyl 2010
- CVE-2015-458627İzleyin
Cross-site request forgery (CSRF) vulnerability in Alcatel-Lucent CellPipe 7130 RG 5Ae.M2013 HOL with firmware 1.0.0.20h.HOL allows remote a
OrtaCVSS 6,8İstismar yokEPSS %1alcatel-lucent · cellpipe 7130 rg 5ae.m2013 hol firmware23 Haz 2015
- CVE-2011-034424İzleyin
Multiple stack-based buffer overflows in unspecified CGI programs in the Unified Maintenance Tool web interface in the embedded web server i
OrtaCVSS 5,8İstismar yokEPSS %2alcatel-lucent · omnipcx8 Mar 2011
- CVE-2002-029324İzleyin
FTP service in Alcatel OmniPCX 4400 allows the "halt" user to gain root privileges by modifying root's .profile file.
OrtaCVSS 6,2İstismar yokEPSS %0alcatel-lucent · omnipcx31 May 2002
- CVE-2003-110822İzleyin
The Session Initiation Protocol (SIP) implementation in Alcatel OmniPCX Enterprise 5.0 Lx allows remote attackers to cause a denial of servi
OrtaCVSS 5,0İstismar yokEPSS %5alcatel-lucent · omnipcx31 Ara 2003
- CVE-2010-328122İzleyin
Stack-based buffer overflow in the HTTP proxy service in Alcatel-Lucent OmniVista 4760 server before R5.1.06.03.c_Patch3 allows remote attac
OrtaCVSS 5,4İstismar yokEPSS %2alcatel-lucent · omnivista 4760 server23 Eyl 2010
- CVE-2015-868721İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in the Management Console in Alcatel-Lucent Motive Home Device Manager (HDM) before 4.2
OrtaCVSS 5,4İstismar yokEPSS %1alcatel-lucent · motive home device manager23 Mar 2017
- CVE-2015-280418İzleyin
The management web interface in Alcatel-Lucent OmniSwitch 6450, 6250, 6850E, 9000E, 6400, and 6855 with firmware before 6.6.4.309.R01 and 6.
OrtaCVSS 4,3İstismar yokEPSS %2alcatel-lucent · omniswitch firmware16 Haz 2015
- CVE-2007-519018İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in Alcatel OmniVista 4760 R4.2 and earlier allow remote attackers to inject arbitrary we
OrtaCVSS 4,3Kavram kanıtıEPSS %2alcatel-lucent · omnivista22 Eki 2007
- CVE-2002-029518İzleyin
Alcatel OmniPCX 4400 installs files with world-writable permissions, which allows local users to reconfigure the system and possibly gain pr
OrtaCVSS 4,6İstismar yokEPSS %0alcatel-lucent · omnipcx31 May 2002
- CVE-2013-465317İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in the signin functionality of ics in MyTeamwork services in Alcatel-Lucent Omnitouch 86
OrtaCVSS 4,3İstismar yokEPSS %1alcatel-lucent · omnitouch 8400 instant communications suite19 Ağu 2013
- CVE-2015-458717İzleyin
Cross-site scripting (XSS) vulnerability in the Alcatel-Lucent CellPipe 7130 router with firmware 1.0.0.20h.HOL allows remote attackers to i
OrtaCVSS 4,3İstismar yokEPSS %1alcatel-lucent · cellpipe 7130 router firmware18 Haz 2015