Vulnerability index

Browse CVEs

39 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Crestron Toolbox Protocol Firmware CRITICAL 9.8
CVE-2018-11229EPSS 6%

Crestron TSW-1060, TSW-760, TSW-560, TSW-1060-NC, TSW-760-NC, and TSW-560-NC devices before 2.001.0037.001 allow unauthenticated remote code executio…

Fix: 2.001.0037.001+
Fix from $2,300 2018-06-08
Dm Txrx 100 Str Firmware HIGH 8.8
CVE-2016-5671

Multiple cross-site request forgery (CSRF) vulnerabilities on Crestron Electronics DM-TXRX-100-STR devices with firmware through 1.3039.00040 allow r…

Fix: after 1.2866.00026
Fix from $1,950 2016-08-03
Dm Txrx 100 Str Firmware CRITICAL 9.8
CVE-2016-5670

Crestron Electronics DM-TXRX-100-STR devices with firmware before 1.3039.00040 have a hardcoded password of admin for the admin account, which makes …

Mitigation only
Fix from $2,300 2016-08-03
Dm Txrx 100 Str Firmware CRITICAL 9.8
CVE-2016-5669

Crestron Electronics DM-TXRX-100-STR devices with firmware before 1.3039.00040 use a hardcoded 0xb9eed4d955a59eb3 X.509 certificate from an OpenSSL T…

Mitigation only
Fix from $2,300 2016-08-03
Dm Txrx 100 Str Firmware CRITICAL 9.8
CVE-2016-5668

Crestron Electronics DM-TXRX-100-STR devices with firmware before 1.3039.00040 allow remote attackers to bypass authentication and change settings vi…

Mitigation only
Fix from $2,300 2016-08-03
Dm Txrx 100 Str Firmware CRITICAL 9.8
CVE-2016-5667

Crestron Electronics DM-TXRX-100-STR devices with firmware before 1.3039.00040 allow remote attackers to bypass authentication via a direct request t…

Mitigation only
Fix from $2,300 2016-08-03
Dm Txrx 100 Str Firmware CRITICAL 9.8
CVE-2016-5666

Crestron Electronics DM-TXRX-100-STR devices with firmware before 1.3039.00040 rely on the client to perform authentication, which allows remote atta…

Mitigation only
Fix from $2,300 2016-08-03
Airmedia Am 100 Firmware CRITICAL 9.8
CVE-2016-5640EPSS 18%

Directory traversal vulnerability in cgi-bin/rftest.cgi on Crestron AirMedia AM-100 devices with firmware before 1.4.0.13 allows remote attackers to …

Fix: after 1.2.1
Fix from $2,300 2016-08-03
Airmedia Am 100 Firmware HIGH 7.5
CVE-2016-5639EPSS 21%

Directory traversal vulnerability in cgi-bin/login.cgi on Crestron AirMedia AM-100 devices with firmware before 1.4.0.13 allows remote attackers to r…

Fix: after 1.4.0.12
Fix from $1,950 2016-08-03