Vulnerability index

Browse CVEs

78 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.2 CVE-2022-4002 A command injection vulnerability could allow an authenticated user to execute operating system commands as root via a specially crafted API request. Q14 Firmware 1.5.0.16+ Fix from $1,9502024-07-31 MEDIUM 6.5 CVE-2022-4003 A denial-of-service vulnerability could allow an authenticated user to trigger an internal service restart via a specially crafted API request. Q14 Firmware 1.5.0.16+ Fix from $1,6002024-07-31 CRITICAL 9.8 CVE-2024-38281 An attacker can access the maintenance console using hard coded credentials for a hidden wireless network on the device. Vigilant Fixed Lpr Coms Box Firmware after 3.1.171.9 Fix from $2,3002024-06-13 MEDIUM 5.3 CVE-2024-25360 A hidden interface in Motorola CX2L Router firmware v1.0.1 leaks information regarding the SystemWizardStatus component via sending a crafted request… Cx2l Firmware Mitigation only Fix from $1,6002024-02-12 HIGH 8.8 CVE-2024-23630 An arbitrary firmware upload vulnerability exists in the Motorola MR2600. An attacker can exploit this vulnerability to achieve code execution on t… Mr2600 Firmware Mitigation only Fix from $1,9502024-01-26 HIGH 8.8 CVE-2024-23627 A command injection vulnerability exists in the 'SaveStaticRouteIPv4Params' parameter of the Motorola MR2600. A remote attacker can exploit this vuln… Mr2600 Firmware Mitigation only Fix from $1,9502024-01-26 HIGH 8.8 CVE-2024-23628 A command injection vulnerability exists in the 'SaveStaticRouteIPv6Params' parameter of the Motorola MR2600. A remote attacker can exploit this vu… Mr2600 Firmware Mitigation only Fix from $1,9502024-01-26 HIGH 7.5 CVE-2024-23629 An authentication bypass vulnerability exists in the web component of the Motorola MR2600. An attacker can exploit this vulnerability to access prote… Mr2600 Firmware Mitigation only Fix from $1,9502024-01-26 HIGH 8.8 CVE-2024-23626 A command injection vulnerability exists in the ‘SaveSysLogParams’ parameter of the Motorola MR2600. A remote attacker can exploit this vulnerabili… Mr2600 Firmware Mitigation only Fix from $1,9502024-01-26 MEDIUM 6.5 CVE-2022-3681 A vulnerability has been identified in the MR2600 router v1.0.18 and earlier that could allow an attacker within range of the wireless network to suc… Mr2600 after 1.0.18 Fix from $1,6002023-10-27 HIGH 8.2 CVE-2022-27813 Motorola MTM5000 series firmwares lack properly configured memory protection of pages shared between the OMAP-L138 ARM and DSP cores. The SoC provide… Mtm5500 Firmware Mitigation only Fix from $1,9502023-10-19 HIGH 8.8 CVE-2022-26941 A format string vulnerability exists in Motorola MTM5000 series firmware AT command handler for the AT+CTGL command. An attacker-controllable string … Mtm5500 Firmware Mitigation only Fix from $1,9502023-10-19 HIGH 8.8 CVE-2022-26943 The Motorola MTM5000 series firmwares generate TETRA authentication challenges using a PRNG using a tick count register as its sole entropy source. L… Mtm5500 Firmware Mitigation only Fix from $1,9502023-10-19 HIGH 8.2 CVE-2022-26942 The Motorola MTM5000 series firmwares lack pointer validation on arguments passed to trusted execution environment (TEE) modules. Two modules are use… Mtm5500 Firmware Mitigation only Fix from $1,9502023-10-19 HIGH 8.8 CVE-2023-23772 Motorola MBTS Site Controller fails to check firmware update authenticity. The Motorola MBTS Site Controller lacks cryptographic signature validation… Mbts Site Controller Firmware Mitigation only Fix from $1,9502023-08-29 HIGH 8.8 CVE-2023-23773 Motorola EBTS/MBTS Base Radio fails to check firmware authenticity. The Motorola MBTS Base Radio lacks cryptographic signature validation for firmwar… Ebts Base Radio Firmware Mitigation only Fix from $1,9502023-08-29 HIGH 8.4 CVE-2023-23774 Motorola EBTS/MBTS Site Controller drops to debug prompt on unhandled exception. The Motorola MBTS Site Controller exposes a debug prompt on the devi… Ebts Site Controller Firmware Mitigation only Fix from $1,9502023-08-29 HIGH 8.4 CVE-2023-23771 Motorola MBTS Base Radio accepts hard-coded backdoor password. The Motorola MBTS Base Radio Man Machine Interface (MMI), allowing for service technic… Mbts Base Radio Firmware Mitigation only Fix from $1,9502023-08-29 CRITICAL 9.8 CVE-2023-23770 Motorola MBTS Site Controller accepts hard-coded backdoor password. The Motorola MBTS Site Controller Man Machine Interface (MMI), allowing for servi… Mbts Site Controller Firmware Mitigation only Fix from $2,3002023-08-29 HIGH 8.8 CVE-2023-31528 Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the staticroute_list parameter. Cx2l Firmware No fix yet Fix from $1,9502023-05-11 HIGH 8.8 CVE-2023-31529 Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the system_time_timezone parameter. Cx2l Firmware No fix yet Fix from $1,9502023-05-11 HIGH 8.8 CVE-2023-31530 Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the smartqos_priority_devices parameter. Cx2l Firmware No fix yet Fix from $1,9502023-05-11 HIGH 8.8 CVE-2023-31531 Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the tomography_ping_number parameter. Cx2l Firmware No fix yet Fix from $1,9502023-05-11 MEDIUM 6.7 CVE-2022-34885 An improper input sanitization vulnerability in the Motorola MR2600 router could allow a local user with elevated permissions to execute arbitrary co… Mr2600 Firmware 1.0.18+ Fix from $1,6002023-01-30 MEDIUM 5.5 CVE-2022-3917 Improper access control of bootloader function was discovered in Motorola Mobility Motorola e20 prior to version RONS31.267-38-8 allows attacker with… Moto E20 Firmware Mitigation only Fix from $1,6002022-12-14 CRITICAL 9.8 CVE-2022-30270 The Motorola ACE1000 RTU through 2022-05-02 has default credentials. It exposes an SSH interface on port 22/TCP. This interface is used for remote ma… Ace1000 Firmware Mitigation only Fix from $2,3002022-07-26 CRITICAL 9.8 CVE-2022-30271 The Motorola ACE1000 RTU through 2022-05-02 ships with a hardcoded SSH private key and initialization scripts (such as /etc/init.d/sshd_service) only… Ace1000 Firmware Mitigation only Fix from $2,3002022-07-26 CRITICAL 9.8 CVE-2022-30274 The Motorola ACE1000 RTU through 2022-05-02 uses ECB encryption unsafely. It can communicate with an XRT LAN-to-radio gateway by means of an embedded… Ace1000 Firmware Mitigation only Fix from $2,3002022-07-26 HIGH 8.8 CVE-2022-30269 Motorola ACE1000 RTUs through 2022-05-02 mishandle application integrity. They allow for custom application installation via either STS software, the… Ace1000 Firmware Mitigation only Fix from $1,9502022-07-26 HIGH 7.5 CVE-2022-30276 The Motorola MOSCAD and ACE line of RTUs through 2022-05-02 omit an authentication requirement. They feature IP Gateway modules which allow for inter… Moscad Ip Gateway Firmware Mitigation only Fix from $1,9502022-07-26