corega kayıtları
corega üreticisine ait 16 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-352 Cross-Site Request Forgery (CSRF)2
- CWE-254 7PK - Security Features1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-284 Improper Access Control1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
16 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2015-7792İstismar yok | Corega CG-WLBARGS devices allow remote attackers to perform administrative operations via unspecified vectors.corega · cg-wlbargs firmware · CWE-264 | Kritik9,8 | — | %2,8 | 30 Ara 2015 |
35İzleyin | CVE-2016-7809İstismar yok | Cross-site request forgery (CSRF) vulnerability in Corega CG-WLR300NX firmware Ver.corega · cg-wlr300nx firmware · CWE-352 | Yüksek8,8 | — | %0,9 | 9 Haz 2017 |
35İzleyin | CVE-2016-7811İstismar yok | Corega CG-WLR300NX firmware Ver.corega · cg-wlr300nx firmware · CWE-284 | Yüksek8,8 | — | %0,9 | 9 Haz 2017 |
35İzleyin | CVE-2017-10852İstismar yok | Buffer overflow in Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to execute arbitrary code via unspecified vectors.corega · cg-wgr 1200 firmware · CWE-119 | Yüksek8,8 | — | %0,8 | 9 Mar 2018 |
35İzleyin | CVE-2017-10853İstismar yok | Buffer overflow in Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to execute arbitrary commands via unspecified vectors.corega · cg-wgr 1200 firmware · CWE-119 | Yüksek8,8 | — | %0,8 | 9 Mar 2018 |
35İzleyin | CVE-2016-1158İstismar yok | Cross-site request forgery (CSRF) vulnerability on Corega CG-WLBARGMH and CG-WLBARGNL devices allows remote attackers to hijack the authenticorega · cg-wlbargmh · CWE-352 | Yüksek8,8 | — | %0,6 | 3 Mar 2016 |
35İzleyin | CVE-2017-10854İstismar yok | Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to bypass authentication and change the login password via unspecified vectorcorega · cg-wgr 1200 firmware · CWE-306 | Yüksek8,8 | — | %0,6 | 9 Mar 2018 |
32İzleyin | CVE-2016-4822İstismar yok | Corega CG-WLBARGL devices allow remote authenticated users to execute arbitrary commands via unspecified vectors.corega · cg-wlbargl firmware · CWE-77 | Yüksek8,0 | — | %1,1 | 25 Haz 2016 |
31İzleyin | CVE-2016-4823İstismar yok | Corega CG-WLBARAGM devices allow remote attackers to cause a denial of service (reboot) via unspecified vectors.corega · cg-wlbargmh | Yüksek7,5 | — | %1,9 | 25 Haz 2016 |
27İzleyin | CVE-2017-10814İstismar yok | Buffer overflow in CG-WLR300NM Firmware version 1.90 and earlier allows an attacker to execute arbitrary code via unspecified vectors.corega · wlr 300 nm firmware · CWE-119 | Orta6,8 | — | %0,8 | 15 Eyl 2017 |
27İzleyin | CVE-2017-10813İstismar yok | CG-WLR300NM Firmware version 1.90 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors.corega · wlr 300 nm firmware · CWE-78 | Orta6,8 | — | %0,7 | 15 Eyl 2017 |
24İzleyin | CVE-2016-7808İstismar yok | Cross-site scripting vulnerability in Corega CG-WLBARGMH and CG-WLBARGNL allows remote attackers to inject arbitrary web script or HTML via corega · cg-wlbaragm firmware · CWE-79 | Orta6,1 | — | %1,2 | 9 Haz 2017 |
23İzleyin | CVE-2015-7794İstismar yok | Corega CG-WLNCM4G devices provide an open DNS resolver, which allows remote attackers to cause a denial of service (traffic amplification) vcorega · cg-wlncm4g firmware · CWE-20 | Orta5,8 | — | %1,6 | 30 Ara 2015 |
23İzleyin | CVE-2015-7793İstismar yok | Corega CG-WLBARAGM devices provide an open proxy service, which allows remote attackers to trigger outbound network traffic via unspecified corega · cg-wlbaragm firmware · CWE-17 | Orta5,8 | — | %1,6 | 30 Ara 2015 |
21İzleyin | CVE-2016-4824İstismar yok | The Wi-Fi Protected Setup (WPS) implementation on Corega CG-WLR300GNV and CG-WLR300GNV-W devices does not restrict the number of PIN authentcorega · cg-wlr300gnv · CWE-254 | Orta5,3 | — | %1,4 | 25 Haz 2016 |
19İzleyin | CVE-2016-7810İstismar yok | Cross-site scripting vulnerability in Corega CG-WLR300NX firmware Ver.corega · cg-wlr300nx firmware · CWE-79 | Orta4,8 | — | %0,8 | 9 Haz 2017 |
- CVE-2015-779240Planlayın
Corega CG-WLBARGS devices allow remote attackers to perform administrative operations via unspecified vectors.
KritikCVSS 9,8İstismar yokEPSS %3corega · cg-wlbargs firmware30 Ara 2015
- CVE-2016-780935İzleyin
Cross-site request forgery (CSRF) vulnerability in Corega CG-WLR300NX firmware Ver.
YüksekCVSS 8,8İstismar yokEPSS %1corega · cg-wlr300nx firmware9 Haz 2017
- CVE-2016-781135İzleyin
Corega CG-WLR300NX firmware Ver.
YüksekCVSS 8,8İstismar yokEPSS %1corega · cg-wlr300nx firmware9 Haz 2017
- CVE-2017-1085235İzleyin
Buffer overflow in Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to execute arbitrary code via unspecified vectors.
YüksekCVSS 8,8İstismar yokEPSS %1corega · cg-wgr 1200 firmware9 Mar 2018
- CVE-2017-1085335İzleyin
Buffer overflow in Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to execute arbitrary commands via unspecified vectors.
YüksekCVSS 8,8İstismar yokEPSS %1corega · cg-wgr 1200 firmware9 Mar 2018
- CVE-2016-115835İzleyin
Cross-site request forgery (CSRF) vulnerability on Corega CG-WLBARGMH and CG-WLBARGNL devices allows remote attackers to hijack the authenti
YüksekCVSS 8,8İstismar yokEPSS %1corega · cg-wlbargmh3 Mar 2016
- CVE-2017-1085435İzleyin
Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to bypass authentication and change the login password via unspecified vector
YüksekCVSS 8,8İstismar yokEPSS %1corega · cg-wgr 1200 firmware9 Mar 2018
- CVE-2016-482232İzleyin
Corega CG-WLBARGL devices allow remote authenticated users to execute arbitrary commands via unspecified vectors.
YüksekCVSS 8,0İstismar yokEPSS %1corega · cg-wlbargl firmware25 Haz 2016
- CVE-2016-482331İzleyin
Corega CG-WLBARAGM devices allow remote attackers to cause a denial of service (reboot) via unspecified vectors.
YüksekCVSS 7,5İstismar yokEPSS %2corega · cg-wlbargmh25 Haz 2016
- CVE-2017-1081427İzleyin
Buffer overflow in CG-WLR300NM Firmware version 1.90 and earlier allows an attacker to execute arbitrary code via unspecified vectors.
OrtaCVSS 6,8İstismar yokEPSS %1corega · wlr 300 nm firmware15 Eyl 2017
- CVE-2017-1081327İzleyin
CG-WLR300NM Firmware version 1.90 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors.
OrtaCVSS 6,8İstismar yokEPSS %1corega · wlr 300 nm firmware15 Eyl 2017
- CVE-2016-780824İzleyin
Cross-site scripting vulnerability in Corega CG-WLBARGMH and CG-WLBARGNL allows remote attackers to inject arbitrary web script or HTML via
OrtaCVSS 6,1İstismar yokEPSS %1corega · cg-wlbaragm firmware9 Haz 2017
- CVE-2015-779423İzleyin
Corega CG-WLNCM4G devices provide an open DNS resolver, which allows remote attackers to cause a denial of service (traffic amplification) v
OrtaCVSS 5,8İstismar yokEPSS %2corega · cg-wlncm4g firmware30 Ara 2015
- CVE-2015-779323İzleyin
Corega CG-WLBARAGM devices provide an open proxy service, which allows remote attackers to trigger outbound network traffic via unspecified
OrtaCVSS 5,8İstismar yokEPSS %2corega · cg-wlbaragm firmware30 Ara 2015
- CVE-2016-482421İzleyin
The Wi-Fi Protected Setup (WPS) implementation on Corega CG-WLR300GNV and CG-WLR300GNV-W devices does not restrict the number of PIN authent
OrtaCVSS 5,3İstismar yokEPSS %1corega · cg-wlr300gnv25 Haz 2016
- CVE-2016-781019İzleyin
Cross-site scripting vulnerability in Corega CG-WLR300NX firmware Ver.
OrtaCVSS 4,8İstismar yokEPSS %1corega · cg-wlr300nx firmware9 Haz 2017