Vulnerability index

Browse CVEs

78 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Q14 Firmware HIGH 7.2
CVE-2022-4002

A command injection vulnerability could allow an authenticated user to execute operating system commands as root via a specially crafted API request.

Fix: 1.5.0.16+
Fix from $1,950 2024-07-31
Q14 Firmware MEDIUM 6.5
CVE-2022-4003

A denial-of-service vulnerability could allow an authenticated user to trigger an internal service restart via a specially crafted API request.

Fix: 1.5.0.16+
Fix from $1,600 2024-07-31
Vigilant Fixed Lpr Coms Box Firmware CRITICAL 9.8
CVE-2024-38281

An attacker can access the maintenance console using hard coded credentials for a hidden wireless network on the device.

Fix: after 3.1.171.9
Fix from $2,300 2024-06-13
Cx2l Firmware MEDIUM 5.3
CVE-2024-25360

A hidden interface in Motorola CX2L Router firmware v1.0.1 leaks information regarding the SystemWizardStatus component via sending a crafted request…

Mitigation only
Fix from $1,600 2024-02-12
Mr2600 Firmware HIGH 8.8
CVE-2024-23630

An arbitrary firmware upload vulnerability exists in the Motorola MR2600. An attacker can exploit this vulnerability to achieve code execution on t…

Mitigation only
Fix from $1,950 2024-01-26
Mr2600 Firmware HIGH 8.8
CVE-2024-23627

A command injection vulnerability exists in the 'SaveStaticRouteIPv4Params' parameter of the Motorola MR2600. A remote attacker can exploit this vuln…

Mitigation only
Fix from $1,950 2024-01-26
Mr2600 Firmware HIGH 8.8
CVE-2024-23628

A command injection vulnerability exists in the 'SaveStaticRouteIPv6Params' parameter of the Motorola MR2600. A remote attacker can exploit this vu…

Mitigation only
Fix from $1,950 2024-01-26
Mr2600 Firmware HIGH 7.5
CVE-2024-23629

An authentication bypass vulnerability exists in the web component of the Motorola MR2600. An attacker can exploit this vulnerability to access prote…

Mitigation only
Fix from $1,950 2024-01-26
Mr2600 Firmware HIGH 8.8
CVE-2024-23626

A command injection vulnerability exists in the ‘SaveSysLogParams’ parameter of the Motorola MR2600. A remote attacker can exploit this vulnerabili…

Mitigation only
Fix from $1,950 2024-01-26
Mr2600 MEDIUM 6.5
CVE-2022-3681

A vulnerability has been identified in the MR2600 router v1.0.18 and earlier that could allow an attacker within range of the wireless network to suc…

Fix: after 1.0.18
Fix from $1,600 2023-10-27
Mtm5500 Firmware HIGH 8.2
CVE-2022-27813

Motorola MTM5000 series firmwares lack properly configured memory protection of pages shared between the OMAP-L138 ARM and DSP cores. The SoC provide…

Mitigation only
Fix from $1,950 2023-10-19
Mtm5500 Firmware HIGH 8.8
CVE-2022-26941

A format string vulnerability exists in Motorola MTM5000 series firmware AT command handler for the AT+CTGL command. An attacker-controllable string …

Mitigation only
Fix from $1,950 2023-10-19
Mtm5500 Firmware HIGH 8.8
CVE-2022-26943

The Motorola MTM5000 series firmwares generate TETRA authentication challenges using a PRNG using a tick count register as its sole entropy source. L…

Mitigation only
Fix from $1,950 2023-10-19
Mtm5500 Firmware HIGH 8.2
CVE-2022-26942

The Motorola MTM5000 series firmwares lack pointer validation on arguments passed to trusted execution environment (TEE) modules. Two modules are use…

Mitigation only
Fix from $1,950 2023-10-19
Mbts Site Controller Firmware HIGH 8.8
CVE-2023-23772

Motorola MBTS Site Controller fails to check firmware update authenticity. The Motorola MBTS Site Controller lacks cryptographic signature validation…

Mitigation only
Fix from $1,950 2023-08-29
Ebts Base Radio Firmware HIGH 8.8
CVE-2023-23773

Motorola EBTS/MBTS Base Radio fails to check firmware authenticity. The Motorola MBTS Base Radio lacks cryptographic signature validation for firmwar…

Mitigation only
Fix from $1,950 2023-08-29
Ebts Site Controller Firmware HIGH 8.4
CVE-2023-23774

Motorola EBTS/MBTS Site Controller drops to debug prompt on unhandled exception. The Motorola MBTS Site Controller exposes a debug prompt on the devi…

Mitigation only
Fix from $1,950 2023-08-29
Mbts Base Radio Firmware HIGH 8.4
CVE-2023-23771

Motorola MBTS Base Radio accepts hard-coded backdoor password. The Motorola MBTS Base Radio Man Machine Interface (MMI), allowing for service technic…

Mitigation only
Fix from $1,950 2023-08-29
Mbts Site Controller Firmware CRITICAL 9.8
CVE-2023-23770

Motorola MBTS Site Controller accepts hard-coded backdoor password. The Motorola MBTS Site Controller Man Machine Interface (MMI), allowing for servi…

Mitigation only
Fix from $2,300 2023-08-29
Cx2l Firmware HIGH 8.8
CVE-2023-31528

Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the staticroute_list parameter.

No fix yet
Fix from $1,950 2023-05-11
Cx2l Firmware HIGH 8.8
CVE-2023-31529

Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the system_time_timezone parameter.

No fix yet
Fix from $1,950 2023-05-11
Cx2l Firmware HIGH 8.8
CVE-2023-31530

Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the smartqos_priority_devices parameter.

No fix yet
Fix from $1,950 2023-05-11
Cx2l Firmware HIGH 8.8
CVE-2023-31531

Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the tomography_ping_number parameter.

No fix yet
Fix from $1,950 2023-05-11
Mr2600 Firmware MEDIUM 6.7
CVE-2022-34885

An improper input sanitization vulnerability in the Motorola MR2600 router could allow a local user with elevated permissions to execute arbitrary co…

Fix: 1.0.18+
Fix from $1,600 2023-01-30
Moto E20 Firmware MEDIUM 5.5
CVE-2022-3917

Improper access control of bootloader function was discovered in Motorola Mobility Motorola e20 prior to version RONS31.267-38-8 allows attacker with…

Mitigation only
Fix from $1,600 2022-12-14
Ace1000 Firmware CRITICAL 9.8
CVE-2022-30270

The Motorola ACE1000 RTU through 2022-05-02 has default credentials. It exposes an SSH interface on port 22/TCP. This interface is used for remote ma…

Mitigation only
Fix from $2,300 2022-07-26
Ace1000 Firmware CRITICAL 9.8
CVE-2022-30271

The Motorola ACE1000 RTU through 2022-05-02 ships with a hardcoded SSH private key and initialization scripts (such as /etc/init.d/sshd_service) only…

Mitigation only
Fix from $2,300 2022-07-26
Ace1000 Firmware CRITICAL 9.8
CVE-2022-30274

The Motorola ACE1000 RTU through 2022-05-02 uses ECB encryption unsafely. It can communicate with an XRT LAN-to-radio gateway by means of an embedded…

Mitigation only
Fix from $2,300 2022-07-26
Ace1000 Firmware HIGH 8.8
CVE-2022-30269

Motorola ACE1000 RTUs through 2022-05-02 mishandle application integrity. They allow for custom application installation via either STS software, the…

Mitigation only
Fix from $1,950 2022-07-26
Moscad Ip Gateway Firmware HIGH 7.5
CVE-2022-30276

The Motorola MOSCAD and ACE line of RTUs through 2022-05-02 omit an authentication requirement. They feature IP Gateway modules which allow for inter…

Mitigation only
Fix from $1,950 2022-07-26