Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Iap 420 Firmware HIGH 7.5
CVE-2024-55548

Improper check of password character lenght in ORing IAP-420 allows a forced deadlock. This issue affects IAP-420: through 2.01e.

Fix: after 2.01e
Fix from $1,950 2024-12-10
Iap 420 Firmware CRITICAL 9.8
CVE-2024-55547EPSS 17%

SNMP objects in NET-SNMP used in ORing IAP-420 allows Command Injection. This issue affects IAP-420: through 2.01e.

Fix: after 2.01e
Fix from $2,300 2024-12-10
Iap 420 Firmware MEDIUM 6.1
CVE-2024-55545

Missing input validation in the ORing IAP-420 web-interface allows Cross-Site Scripting (XSS).This issue affects IAP-420 version 2.01e and below.

Fix: after 2.01e
Fix from $1,600 2024-12-10
Iap 420 Firmware MEDIUM 5.4
CVE-2024-55546

Missing input validation in the ORing IAP-420 web-interface allows stored Cross-Site Scripting (XSS).This issue affects IAP-420 version 2.01e and bel…

Fix: after 2.01e
Fix from $1,600 2024-12-10
Iap 420 Firmware HIGH 8.8
CVE-2024-55544EPSS 12%

Missing input validation in the ORing IAP-420 web-interface allows authenticated Command Injections on OS level.This issue affects IAP-420 version 2.…

Fix: after 2.01e
Fix from $1,950 2024-12-10
Iap 420 Firmware HIGH 8.8
CVE-2024-5411EPSS 23%

Missing input validation and OS command integration of the input in the ORing IAP-420 web-interface allows authenticated command injection.This issue…

Fix: after 2.01e
Fix from $1,950 2024-05-28
Iap 420 Firmware MEDIUM 5.4
CVE-2024-5410EPSS 14%

Missing input validation in the ORing IAP-420 web-interface allows stored Cross-Site Scripting (XSS).This issue affects IAP-420 version 2.01e and bel…

Fix: after 2.01e
Fix from $1,600 2024-05-28
Iap 420\+ Firmware CRITICAL 9.8
CVE-2022-3203

On ORing net IAP-420(+) with FW version 2.0m a telnet server is enabled by default and cannot permanently be disabled. You can connect to the device …

No fix yet
Fix from $2,300 2022-10-21