Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Hi3120 Firmware MEDIUM 5.5
CVE-2025-66963

An issue in Hitron HI3120 v.7.2.4.5.2b1 allows a local attacker to obtain sensitive information via the Logout option in the index.html

No fix yet
Fix from $1,600 2025-12-15
Coda 4582u Firmware CRITICAL 9.8
CVE-2024-25730

Hitron CODA-4582 and CODA-4589 devices have default PSKs that are generated from 5-digit hex values concatenated with a "Hitron" substring, resulting…

Mitigation only
Fix from $2,300 2024-02-23
Coda 5310 Firmware CRITICAL 9.8
CVE-2023-30603

Hitron Technologies CODA-5310 Telnet function with the default account and password, and there is no warning or prompt to ask users to change the def…

Mitigation only
Fix from $2,300 2023-06-02
Coda 5310 Firmware CRITICAL 9.8
CVE-2023-30604

It is identified a vulnerability of insufficient authentication in the system configuration interface of Hitron Technologies CODA-5310. An unauthoriz…

Mitigation only
Fix from $2,300 2023-06-02
Coda 5310 Firmware HIGH 7.5
CVE-2023-30602

Hitron Technologies CODA-5310’s Telnet function transfers sensitive data in plaintext. An unauthenticated remote attacker can exploit this vulnerabil…

Mitigation only
Fix from $1,950 2023-06-02
Coda 5310 Firmware HIGH 7.2
CVE-2022-47617

Hitron CODA-5310 has hard-coded encryption/decryption keys in the program code. A remote attacker authenticated as an administrator can decrypt syste…

Mitigation only
Fix from $1,950 2023-06-02
Coda 5310 Firmware HIGH 7.2
CVE-2022-47616

Hitron CODA-5310 has insufficient filtering for specific parameters in the connection test function. A remote attacker authenticated as an administra…

Mitigation only
Fix from $1,950 2023-06-02
Chita Firmware HIGH 8.8
CVE-2022-25017EPSS 29%

Hitron CHITA 7.2.2.0.3b6-CD devices contain a command injection vulnerability via the Device/DDNS ddnsUsername field.

No fix yet
Fix from $1,950 2022-04-01
Coda 4582u Firmware MEDIUM 5.4
CVE-2020-8824

Hitron CODA-4582U 7.1.1.30 devices allow XSS via a Managed Device name on the Wireless > Access Control > Add Managed Device screen.

No fix yet
Fix from $1,600 2020-02-19
Cve 30360 Firmware HIGH 7.5
CVE-2014-10069

Hitron CVE-30360 devices use a 578A958E3DD933FC DES key that is shared across different customers' installations, which makes it easier for attackers…

Patch available
Fix from $1,950 2018-01-07