iodata kayıtları
iodata üreticisine ait 37 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 9
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')9
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer5
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-352 Cross-Site Request Forgery (CSRF)3
- CWE-798 Use of Hard-coded Credentials3
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
37 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2023-29804İstismar yok | WFS-SR03 v1.0.3 was discovered to contain a command injection vulnerability via the sys_smb_pwdmod function.iodata · wfs-sr03w firmware · CWE-78 | Yüksek8,8 | — | %17,5 | 14 Nis 2023 |
40Planlayın | CVE-2016-7806İstismar yok | I-O DATA DEVICE WFS-SR01 firmware version 1.10 and earlier allow remote attackers to execute arbitrary OS commands via unspecified vectors.iodata · wfs-sr01 firmware · CWE-78 | Kritik9,8 | — | %4,0 | 9 Haz 2017 |
40Planlayın | CVE-2017-2142İstismar yok | Buffer overflow in WN-G300R3 firmware Ver.1.03 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.iodata · wn-g300r3 firmware · CWE-119 | Kritik9,8 | — | %3,1 | 28 Nis 2017 |
40Planlayın | CVE-2023-29805İstismar yok | WFS-SR03 v1.0.3 was discovered to contain a command injection vulnerability via the pro_stor_canceltrans_handler_part_19 function.iodata · wfs-sr03w firmware · CWE-78 | Kritik9,8 | — | %2,4 | 14 Nis 2023 |
36İzleyin | CVE-2016-4845Kavram kanıtı | Cross-site request forgery (CSRF) vulnerability on I-O DATA DEVICE HVL-A2.0, HVL-A3.0, HVL-A4.0, HVL-AT1.0S, HVL-AT2.0, HVL-AT3.0, HVL-AT4.0iodata · hvl-a2.0 firmware · CWE-352 | Yüksek8,8 | — | %2,4 | 24 Eyl 2016 |
35İzleyin | CVE-2017-2112İstismar yok | TS-WPTCAM firmware version 1.18 and earlier, TS-WPTCAM2 firmware version 1.00, TS-WLCE firmware version 1.18 and earlier, TS-WLC2 firmware viodata · ts-ptcam\/poe firmware · CWE-78 | Yüksek8,8 | — | %1,7 | 28 Nis 2017 |
35İzleyin | CVE-2018-0663İstismar yok | Multiple I-O DATA network camera products (TS-WRLP firmware Ver.1.09.04 and earlier, TS-WRLA firmware Ver.1.09.04 and earlier, TS-WRLP/E firiodata · ts-wrlp firmware · CWE-798 | Yüksek8,8 | — | %1,6 | 7 Eyl 2018 |
35İzleyin | CVE-2017-2113İstismar yok | Buffer overflow in TS-WPTCAM firmware version 1.18 and earlier, TS-WPTCAM2 firmware version 1.00, TS-WLCE firmware version 1.18 and earlier,iodata · ts-ptcam\/poe firmware · CWE-119 | Yüksek8,8 | — | %1,6 | 28 Nis 2017 |
35İzleyin | CVE-2017-2223İstismar yok | Cross-site request forgery (CSRF) vulnerability in TS-WPTCAM, TS-PTCAM, TS-PTCAM/POE, TS-WLC2, TS-WLCE, TS-WRLC firmware version 1.19 and eaiodata · ts-wptcam camera firmware · CWE-352 | Yüksek8,8 | — | %0,9 | 7 Tem 2017 |
35İzleyin | CVE-2017-2280İstismar yok | WN-AX1167GR firmware version 3.00 and earlier uses hardcoded credentials which may allow an attacker that can access the device to execute aiodata · wn-ax1167gr firmware · CWE-798 | Yüksek8,8 | — | %0,8 | 2 Ağu 2017 |
35İzleyin | CVE-2017-2281İstismar yok | WN-AX1167GR firmware version 3.00 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors.iodata · wn-ax1167gr firmware · CWE-78 | Yüksek8,8 | — | %0,8 | 2 Ağu 2017 |
35İzleyin | CVE-2018-0661İstismar yok | Multiple I-O DATA network camera products (TS-WRLP firmware Ver.1.09.04 and earlier, TS-WRLA firmware Ver.1.09.04 and earlier, TS-WRLP/E firiodata · ts-wrlp firmware | Yüksek8,8 | — | %0,6 | 7 Eyl 2018 |
35İzleyin | CVE-2016-4820İstismar yok | Cross-site request forgery (CSRF) vulnerability on I-O DATA DEVICE ETX-R devices allows remote attackers to hijack the authentication of arbiodata · etx-r firmware · CWE-352 | Yüksek8,8 | — | %0,6 | 18 Haz 2016 |
33İzleyin | CVE-2019-19822Kavram kanıtı | A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) allows remote attackers to retrieve the corealtek · rtk 11n ap firmware · CWE-306 | Yüksek7,5 | — | %8,7 | 27 Oca 2020 |
32İzleyin | CVE-2019-19823Kavram kanıtı | A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) stores cleartext administrative passwords realtek · rtk 11n ap firmware · CWE-522 | Yüksek7,5 | — | %6,4 | 27 Oca 2020 |
32İzleyin | CVE-2017-2283İstismar yok | WN-G300R3 firmware version 1.0.2 and earlier uses hardcoded credentials which may allow an attacker that can access the device to execute ariodata · wn-g300r3 firmware · CWE-798 | Yüksek8,0 | — | %0,6 | 2 Ağu 2017 |
31İzleyin | CVE-2016-7814İstismar yok | I-O DATA DEVICE TS-WRLP firmware version 1.00.01 and earlier and TS-WRLA firmware version 1.00.01 and earlier allow remote attackers to obtaiodata · ts-wrlp firmware · CWE-200 | Yüksek7,5 | — | %2,7 | 9 Haz 2017 |
31İzleyin | CVE-2016-7807İstismar yok | I-O DATA DEVICE WFS-SR01 firmware version 1.10 and earlier allow remote attackers to bypass access restriction to access data on storage deviodata · wfs-sr01 firmware · CWE-284 | Yüksek7,5 | — | %2,0 | 9 Haz 2017 |
30İzleyin | CVE-2017-10875İstismar yok | I-O DATA DEVICE LAN DISK Connect Ver2.02 and earlier allows an attacker to cause a denial of service in the application via unspecified vectiodata · lan disk connect firmware · CWE-119 | Yüksek7,5 | — | %1,2 | 13 Kas 2017 |
30İzleyin | CVE-2024-52564İstismar yok | Inclusion of undocumented features or chicken bits issue exists in UD-LT1 firmware Ver.2.1.8 and earlier and UD-LT1/EX firmware Ver.2.1.8 ani-o data device, inc. · ud-lt1 · CWE-1242 | Yüksek7,5 | — | %0,6 | 5 Ara 2024 |
29İzleyin | CVE-2016-7820İstismar yok | Buffer overflow in I-O DATA DEVICE TS-WRLP firmware version 1.01.02 and earlier and TS-WRLA firmware version 1.01.02 and earlier allows an aiodata · ts-wrlp firmware · CWE-119 | Yüksek7,2 | — | %3,3 | 9 Haz 2017 |
29İzleyin | CVE-2016-7819İstismar yok | I-O DATA DEVICE TS-WRLP firmware version 1.01.02 and earlier and TS-WRLA firmware version 1.01.02 and earlier allows an attacker with adminiiodata · ts-wrlp firmware · CWE-78 | Yüksek7,2 | — | %2,2 | 9 Haz 2017 |
28İzleyin | CVE-2013-4712İstismar yok | I-O DATA DEVICE HDL-A and HDL2-A devices with firmware 1.07 and earlier do not properly manage sessions, which allows remote attackers to obiodata · hdl2-a\/e · CWE-399 | Orta6,8 | — | %2,0 | 19 Eki 2013 |
28İzleyin | CVE-2017-2141İstismar yok | WN-G300R3 firmware 1.03 and earlier allows attackers with administrator rights to execute arbitrary OS commands via unspecified vectors.iodata · wn-g300r3 firmware · CWE-78 | Yüksek7,2 | — | %1,6 | 28 Nis 2017 |
28İzleyin | CVE-2024-47133İstismar yok | UD-LT1 firmware Ver.2.1.9 and earlier and UD-LT1/EX firmware Ver.2.1.9 and earlier allow a remote authenticated attacker with an administrati-o data device, inc. · ud-lt1 · CWE-78 | Yüksek7,2 | — | %0,9 | 5 Ara 2024 |
- CVE-2023-2980440Planlayın
WFS-SR03 v1.0.3 was discovered to contain a command injection vulnerability via the sys_smb_pwdmod function.
YüksekCVSS 8,8İstismar yokEPSS %17iodata · wfs-sr03w firmware14 Nis 2023
- CVE-2016-780640Planlayın
I-O DATA DEVICE WFS-SR01 firmware version 1.10 and earlier allow remote attackers to execute arbitrary OS commands via unspecified vectors.
KritikCVSS 9,8İstismar yokEPSS %4iodata · wfs-sr01 firmware9 Haz 2017
- CVE-2017-214240Planlayın
Buffer overflow in WN-G300R3 firmware Ver.1.03 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.
KritikCVSS 9,8İstismar yokEPSS %3iodata · wn-g300r3 firmware28 Nis 2017
- CVE-2023-2980540Planlayın
WFS-SR03 v1.0.3 was discovered to contain a command injection vulnerability via the pro_stor_canceltrans_handler_part_19 function.
KritikCVSS 9,8İstismar yokEPSS %2iodata · wfs-sr03w firmware14 Nis 2023
- CVE-2016-484536İzleyin
Cross-site request forgery (CSRF) vulnerability on I-O DATA DEVICE HVL-A2.0, HVL-A3.0, HVL-A4.0, HVL-AT1.0S, HVL-AT2.0, HVL-AT3.0, HVL-AT4.0
YüksekCVSS 8,8Kavram kanıtıEPSS %2iodata · hvl-a2.0 firmware24 Eyl 2016
- CVE-2017-211235İzleyin
TS-WPTCAM firmware version 1.18 and earlier, TS-WPTCAM2 firmware version 1.00, TS-WLCE firmware version 1.18 and earlier, TS-WLC2 firmware v
YüksekCVSS 8,8İstismar yokEPSS %2iodata · ts-ptcam\/poe firmware28 Nis 2017
- CVE-2018-066335İzleyin
Multiple I-O DATA network camera products (TS-WRLP firmware Ver.1.09.04 and earlier, TS-WRLA firmware Ver.1.09.04 and earlier, TS-WRLP/E fir
YüksekCVSS 8,8İstismar yokEPSS %2iodata · ts-wrlp firmware7 Eyl 2018
- CVE-2017-211335İzleyin
Buffer overflow in TS-WPTCAM firmware version 1.18 and earlier, TS-WPTCAM2 firmware version 1.00, TS-WLCE firmware version 1.18 and earlier,
YüksekCVSS 8,8İstismar yokEPSS %2iodata · ts-ptcam\/poe firmware28 Nis 2017
- CVE-2017-222335İzleyin
Cross-site request forgery (CSRF) vulnerability in TS-WPTCAM, TS-PTCAM, TS-PTCAM/POE, TS-WLC2, TS-WLCE, TS-WRLC firmware version 1.19 and ea
YüksekCVSS 8,8İstismar yokEPSS %1iodata · ts-wptcam camera firmware7 Tem 2017
- CVE-2017-228035İzleyin
WN-AX1167GR firmware version 3.00 and earlier uses hardcoded credentials which may allow an attacker that can access the device to execute a
YüksekCVSS 8,8İstismar yokEPSS %1iodata · wn-ax1167gr firmware2 Ağu 2017
- CVE-2017-228135İzleyin
WN-AX1167GR firmware version 3.00 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors.
YüksekCVSS 8,8İstismar yokEPSS %1iodata · wn-ax1167gr firmware2 Ağu 2017
- CVE-2018-066135İzleyin
Multiple I-O DATA network camera products (TS-WRLP firmware Ver.1.09.04 and earlier, TS-WRLA firmware Ver.1.09.04 and earlier, TS-WRLP/E fir
YüksekCVSS 8,8İstismar yokEPSS %1iodata · ts-wrlp firmware7 Eyl 2018
- CVE-2016-482035İzleyin
Cross-site request forgery (CSRF) vulnerability on I-O DATA DEVICE ETX-R devices allows remote attackers to hijack the authentication of arb
YüksekCVSS 8,8İstismar yokEPSS %1iodata · etx-r firmware18 Haz 2016
- CVE-2019-1982233İzleyin
A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) allows remote attackers to retrieve the co
YüksekCVSS 7,5Kavram kanıtıEPSS %9realtek · rtk 11n ap firmware27 Oca 2020
- CVE-2019-1982332İzleyin
A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) stores cleartext administrative passwords
YüksekCVSS 7,5Kavram kanıtıEPSS %6realtek · rtk 11n ap firmware27 Oca 2020
- CVE-2017-228332İzleyin
WN-G300R3 firmware version 1.0.2 and earlier uses hardcoded credentials which may allow an attacker that can access the device to execute ar
YüksekCVSS 8,0İstismar yokEPSS %1iodata · wn-g300r3 firmware2 Ağu 2017
- CVE-2016-781431İzleyin
I-O DATA DEVICE TS-WRLP firmware version 1.00.01 and earlier and TS-WRLA firmware version 1.00.01 and earlier allow remote attackers to obta
YüksekCVSS 7,5İstismar yokEPSS %3iodata · ts-wrlp firmware9 Haz 2017
- CVE-2016-780731İzleyin
I-O DATA DEVICE WFS-SR01 firmware version 1.10 and earlier allow remote attackers to bypass access restriction to access data on storage dev
YüksekCVSS 7,5İstismar yokEPSS %2iodata · wfs-sr01 firmware9 Haz 2017
- CVE-2017-1087530İzleyin
I-O DATA DEVICE LAN DISK Connect Ver2.02 and earlier allows an attacker to cause a denial of service in the application via unspecified vect
YüksekCVSS 7,5İstismar yokEPSS %1iodata · lan disk connect firmware13 Kas 2017
- CVE-2024-5256430İzleyin
Inclusion of undocumented features or chicken bits issue exists in UD-LT1 firmware Ver.2.1.8 and earlier and UD-LT1/EX firmware Ver.2.1.8 an
YüksekCVSS 7,5İstismar yokEPSS %1i-o data device, inc. · ud-lt15 Ara 2024
- CVE-2016-782029İzleyin
Buffer overflow in I-O DATA DEVICE TS-WRLP firmware version 1.01.02 and earlier and TS-WRLA firmware version 1.01.02 and earlier allows an a
YüksekCVSS 7,2İstismar yokEPSS %3iodata · ts-wrlp firmware9 Haz 2017
- CVE-2016-781929İzleyin
I-O DATA DEVICE TS-WRLP firmware version 1.01.02 and earlier and TS-WRLA firmware version 1.01.02 and earlier allows an attacker with admini
YüksekCVSS 7,2İstismar yokEPSS %2iodata · ts-wrlp firmware9 Haz 2017
- CVE-2013-471228İzleyin
I-O DATA DEVICE HDL-A and HDL2-A devices with firmware 1.07 and earlier do not properly manage sessions, which allows remote attackers to ob
OrtaCVSS 6,8İstismar yokEPSS %2iodata · hdl2-a\/e19 Eki 2013
- CVE-2017-214128İzleyin
WN-G300R3 firmware 1.03 and earlier allows attackers with administrator rights to execute arbitrary OS commands via unspecified vectors.
YüksekCVSS 7,2İstismar yokEPSS %2iodata · wn-g300r3 firmware28 Nis 2017
- CVE-2024-4713328İzleyin
UD-LT1 firmware Ver.2.1.9 and earlier and UD-LT1/EX firmware Ver.2.1.9 and earlier allow a remote authenticated attacker with an administrat
YüksekCVSS 7,2İstismar yokEPSS %1i-o data device, inc. · ud-lt15 Ara 2024