İçeriğe atla
Noroxi

Verizon kayıtları

verizon üreticisine ait 21 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
3
Düzeltme kaydı olan
%9,5
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

21 kayıt
  • CVE-2022-28375
    40Planlayın

    Verizon 5G Home LVSKIHP OutDoorUnit (ODU) 3.33.101.0 does not property sanitize user-controlled parameters within the crtcswitchsimprofile f

    KritikCVSS 9,8İstismar yokEPSS %2

    verizon · lvskihp outdoorunit firmware14 Tem 2022

  • CVE-2022-28373
    40Planlayın

    Verizon 5G Home LVSKIHP InDoorUnit (IDU) 3.4.66.162 does not properly sanitize user-controlled parameters within the crtcreadpartition funct

    KritikCVSS 9,8İstismar yokEPSS %2

    verizon · lvskihp indoorunit firmware14 Tem 2022

  • CVE-2022-28369
    39İzleyin

    Verizon 5G Home LVSKIHP InDoorUnit (IDU) 3.4.66.162 does not validate the user-provided URL within the crtcmode function's enable_ssh sub-op

    KritikCVSS 9,8İstismar yokEPSS %1

    verizon · lvskihp indoorunit firmware14 Tem 2022

  • CVE-2019-3914
    37İzleyin

    Remote command injection vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows a remote, authenticated a

    YüksekCVSS 7,2İstismar yokEPSS %30

    verizon · fios quantum gateway g1100 firmware11 Nis 2019

  • CVE-2022-28374
    36İzleyin

    Verizon 5G Home LVSKIHP OutDoorUnit (ODU) 3.33.101.0 does not property sanitize user-controlled parameters within the DMACC URLs on the Sett

    YüksekCVSS 8,8İstismar yokEPSS %2

    verizon · lvskihp outdoorunit firmware14 Tem 2022

  • CVE-2020-7660
    33İzleyin

    serialize-javascript prior to 3.1.0 allows remote attackers to inject arbitrary code via the function "deleteFunctions" within "index.js".

    YüksekCVSS 8,1İstismar yokEPSS %3

    verizon · serialize-javascript1 Haz 2020

  • CVE-2022-28376
    32İzleyin

    Verizon 5G Home LVSKIHP outside devices through 2022-02-15 allow anyone (knowing the device's serial number) to access a CPE admin website,

    YüksekCVSS 8,1İstismar yokEPSS %1

    verizon · lvskihp firmware3 Nis 2022

  • CVE-2019-3916
    31İzleyin

    Information disclosure vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows an remote, unauthenticated

    YüksekCVSS 7,5İstismar yokEPSS %2

    verizon · fios quantum gateway g1100 firmware11 Nis 2019

  • CVE-2022-29729
    30İzleyin

    Verizon 4G LTE Network Extender GA4.38 - V0.4.038.2131 utilizes a weak default admin password generation algorithm which generates passwords

    YüksekCVSS 7,5İstismar yokEPSS %1

    verizon · 4g lte network extender firmware2 Haz 2022

  • CVE-2022-28377
    30İzleyin

    On Verizon 5G Home LVSKIHP InDoorUnit (IDU) 3.4.66.162 and OutDoorUnit (ODU) 3.33.101.0 devices, the CRTC and ODU RPC endpoints rely on a st

    YüksekCVSS 7,5İstismar yokEPSS %1

    verizon · lvskihp indoorunit firmware14 Tem 2022

  • CVE-2022-28372
    30İzleyin

    On Verizon 5G Home LVSKIHP InDoorUnit (IDU) 3.4.66.162 and OutDoorUnit (ODU) 3.33.101.0 devices, the CRTC and ODU RPC endpoints provide a me

    YüksekCVSS 7,5İstismar yokEPSS %1

    verizon · lvskihp indoorunit firmware14 Tem 2022

  • CVE-2019-3915
    30İzleyin

    Authentication Bypass by Capture-replay vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows an unauthe

    YüksekCVSS 7,5İstismar yokEPSS %1

    verizon · fios quantum gateway g1100 firmware11 Nis 2019

  • CVE-2022-28371
    30İzleyin

    On Verizon 5G Home LVSKIHP InDoorUnit (IDU) 3.4.66.162 and OutDoorUnit (ODU) 3.33.101.0 devices, the CRTC and ODU RPC endpoints rely on a st

    YüksekCVSS 7,5İstismar yokEPSS %1

    verizon · lvskihp indoorunit firmware14 Tem 2022

  • CVE-2022-28370
    30İzleyin

    On Verizon 5G Home LVSKIHP OutDoorUnit (ODU) 3.33.101.0 devices, the RPC endpoint crtc_fw_upgrade provides a means of provisioning a firmwar

    YüksekCVSS 7,5İstismar yokEPSS %0

    verizon · lvskihp outdoorunit firmware14 Tem 2022

  • CVE-2013-0126
    28İzleyin

    Multiple cross-site request forgery (CSRF) vulnerabilities in index.cgi on the Verizon FIOS Actiontec MI424WR-GEN3I router with firmware 40.

    OrtaCVSS 6,8Kavram kanıtıEPSS %3

    verizon · fios actiontec mi424wr-gen31 router firmware21 Mar 2013

  • CVE-2013-4875
    24İzleyin

    The Uboot bootloader on the Verizon Wireless Network Extender SCS-2U01 allows physically proximate attackers to bypass the intended boot pro

    OrtaCVSS 6,2İstismar yokEPSS %1

    verizon · wireless network extender18 Tem 2013

  • CVE-2013-4876
    24İzleyin

    The Verizon Wireless Network Extender SCS-2U01 has a hardcoded password for the root account, which makes it easier for physically proximate

    OrtaCVSS 6,2İstismar yokEPSS %1

    verizon · wireless network extender18 Tem 2013

  • CVE-2013-4874
    24İzleyin

    The Uboot bootloader on the Verizon Wireless Network Extender SCS-26UC4 allows physically proximate attackers to obtain root access by conne

    OrtaCVSS 6,2İstismar yokEPSS %1

    verizon · wireless network extender18 Tem 2013

  • CVE-2019-16769
    21İzleyin

    Affected versions of serialize-javascript are vulnerable to Cross-site Scripting (XSS)

    OrtaCVSS 5,4İstismar yokEPSS %1

    verizon · serialize-javascript5 Ara 2019

  • CVE-2023-38301
    13İzleyin

    An issue was discovered in a third-party component related to vendor.gsm.serial, shipped on devices from multiple device manufacturers.

    DüşükCVSS 3,4İstismar yokEPSS %0

    22 Nis 2024

  • CVE-2013-4877
    10İzleyin

    The Verizon Wireless Network Extender SCS-26UC4 and SCS-2U01 does not use CAVE authentication, which makes it easier for remote attackers to

    DüşükCVSS 2,6İstismar yokEPSS %1

    verizon · wireless network extender18 Tem 2013