aztech kayıtları
aztech üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-287 Improper Authentication2
- CWE-255 Credentials Management Errors1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-522 Insufficiently Protected Credentials1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
52Planlayın | CVE-2014-6436Kavram kanıtı | Aztech ADSL DSL5018EN (1T1R), DSL705E, and DSL705EU devices improperly manage sessions, which allows remote attackers to bypass authenticatiaztech · adsl dsl5018en \(1t1r\) firmware · CWE-287 | Kritik9,8 | — | %42,1 | 12 Oca 2018 |
44Planlayın | CVE-2014-6437Kavram kanıtı | Aztech ADSL DSL5018EN (1T1R), DSL705E, and DSL705EU devices allow remote attackers to obtain sensitive device configuration information via aztech · adsl dsl5018en \(1t1r\) firmware · CWE-200 | Kritik9,8 | — | %15,5 | 12 Oca 2018 |
41Planlayın | CVE-2008-6554İstismar yok | cgi-bin/script in Aztech ADSL2/2+ 4-port router 3.7.0 build 070426 allows remote attackers to execute arbitrary commands via shell metacharaaztech · adsl2\/2\+4-port router · CWE-78 | Kritik10,0 | — | %3,7 | 30 Mar 2009 |
41Planlayın | CVE-2008-6588İstismar yok | Aztech ADSL2/2+ 4-port router has a default "isp" account with a default "isp" password, which allows remote attackers to obtain access if taztech · adsl2\/2\+4-port router · CWE-255 | Kritik10,0 | — | %2,4 | 3 Nis 2009 |
39İzleyin | CVE-2022-45599Kavram kanıtı | Aztech WMB250AC Mesh Routers Firmware Version 016 2020 is vulnerable to PHP Type Juggling in file /var/www/login.php, allows attackers to gaaztech · wmb250ac firmware · CWE-522 | Kritik9,8 | — | %1,0 | 22 Şub 2023 |
38İzleyin | CVE-2007-4733İstismar yok | The Aztech DSL600EU router, when WAN access to the web interface is disabled, does not properly block inbound traffic on TCP port 80, which aztech · dsl 600eu router · CWE-264 | Kritik9,3 | — | %1,8 | 6 Eyl 2007 |
36İzleyin | CVE-2022-45600Kavram kanıtı | Aztech WMB250AC Mesh Routers Firmware Version 016 2020 devices improperly manage sessions, which allows remote attackers to bypass authenticaztech · wmb250ac firmware · CWE-77 | Yüksek8,8 | — | %2,3 | 22 Şub 2023 |
34İzleyin | CVE-2014-6435Kavram kanıtı | cgi-bin/AZ_Retrain.cgi in Aztech ADSL DSL5018EN (1T1R), DSL705E, and DSL705EU devices does not check for authentication, which allows remoteaztech · adsl dsl5018en \(1t1r\) firmware · CWE-287 | Yüksek7,5 | — | %12,6 | 12 Oca 2018 |
- CVE-2014-643652Planlayın
Aztech ADSL DSL5018EN (1T1R), DSL705E, and DSL705EU devices improperly manage sessions, which allows remote attackers to bypass authenticati
KritikCVSS 9,8Kavram kanıtıEPSS %42aztech · adsl dsl5018en \(1t1r\) firmware12 Oca 2018
- CVE-2014-643744Planlayın
Aztech ADSL DSL5018EN (1T1R), DSL705E, and DSL705EU devices allow remote attackers to obtain sensitive device configuration information via
KritikCVSS 9,8Kavram kanıtıEPSS %16aztech · adsl dsl5018en \(1t1r\) firmware12 Oca 2018
- CVE-2008-655441Planlayın
cgi-bin/script in Aztech ADSL2/2+ 4-port router 3.7.0 build 070426 allows remote attackers to execute arbitrary commands via shell metachara
KritikCVSS 10,0İstismar yokEPSS %4aztech · adsl2\/2\+4-port router30 Mar 2009
- CVE-2008-658841Planlayın
Aztech ADSL2/2+ 4-port router has a default "isp" account with a default "isp" password, which allows remote attackers to obtain access if t
KritikCVSS 10,0İstismar yokEPSS %2aztech · adsl2\/2\+4-port router3 Nis 2009
- CVE-2022-4559939İzleyin
Aztech WMB250AC Mesh Routers Firmware Version 016 2020 is vulnerable to PHP Type Juggling in file /var/www/login.php, allows attackers to ga
KritikCVSS 9,8Kavram kanıtıEPSS %1aztech · wmb250ac firmware22 Şub 2023
- CVE-2007-473338İzleyin
The Aztech DSL600EU router, when WAN access to the web interface is disabled, does not properly block inbound traffic on TCP port 80, which
KritikCVSS 9,3İstismar yokEPSS %2aztech · dsl 600eu router6 Eyl 2007
- CVE-2022-4560036İzleyin
Aztech WMB250AC Mesh Routers Firmware Version 016 2020 devices improperly manage sessions, which allows remote attackers to bypass authentic
YüksekCVSS 8,8Kavram kanıtıEPSS %2aztech · wmb250ac firmware22 Şub 2023
- CVE-2014-643534İzleyin
cgi-bin/AZ_Retrain.cgi in Aztech ADSL DSL5018EN (1T1R), DSL705E, and DSL705EU devices does not check for authentication, which allows remote
YüksekCVSS 7,5Kavram kanıtıEPSS %13aztech · adsl dsl5018en \(1t1r\) firmware12 Oca 2018