Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

H8951 4g Esp Firmware CRITICAL 9.8
CVE-2023-49255

The router console is accessible without authentication at "data" field, and while a user needs to be logged in in order to modify the configuration,…

Fix: 2310271149+
Fix from $2,300 2024-01-12
H8951 4g Esp Firmware CRITICAL 9.8
CVE-2023-49262

The authentication mechanism can be bypassed by overflowing the value of the Cookie "authentication" field, provided there is an active user session.

Fix: 2310271149+
Fix from $2,300 2024-01-12
H8951 4g Esp Firmware HIGH 8.8
CVE-2023-49254

Authenticated user can execute arbitrary commands in the context of the root user by providing payload in the "destination" field of the network test…

Fix: 2310271149+
Fix from $1,950 2024-01-12
H8951 4g Esp Firmware HIGH 8.8
CVE-2023-49257

An authenticated user is able to upload an arbitrary CGI-compatible file using the certificate upload utility and execute it with the root user privi…

Fix: 2310271149+
Fix from $1,950 2024-01-12
H8951 4g Esp Firmware HIGH 7.5
CVE-2023-49256

It is possible to download the configuration backup without authorization and decrypt included passwords using hardcoded static key.

Fix: 2310271149+
Fix from $1,950 2024-01-12
H8951 4g Esp Firmware HIGH 7.5
CVE-2023-49259

The authentication cookies are generated using an algorithm based on the username, hardcoded secret and the up-time, and can be guessed in a reasonab…

Fix: 2310271149+
Fix from $1,950 2024-01-12
H8951 4g Esp Firmware HIGH 7.5
CVE-2023-49261

The "tokenKey" value used in user authorization is visible in the HTML source of the login page.

Fix: 2310271149+
Fix from $1,950 2024-01-12
H8951 4g Esp Firmware MEDIUM 6.1
CVE-2023-49258

User browser may be forced to execute JavaScript and pass the authentication cookie to the attacker leveraging the XSS vulnerability located at "/gui…

Fix: 2310271149+
Fix from $1,600 2024-01-12
H8951 4g Esp Firmware MEDIUM 6.1
CVE-2023-49260

An XSS attack can be performed by changing the MOTD banner and pointing the victim to the "terminal_tool.cgi" path. It can be used together with the …

Fix: 2310271149+
Fix from $1,600 2024-01-12
H8951 4g Esp Firmware CRITICAL 9.8
CVE-2023-49253

Root user password is hardcoded into the device and cannot be changed in the user interface.

Fix: 2310271149+
Fix from $2,300 2024-01-12
H8922 Firmware CRITICAL 9.8
CVE-2021-28152EPSS 5%

Hongdian H8922 3.0.5 devices have an undocumented feature that allows access to a shell as a superuser. To connect, the telnet service is used on por…

No fix yet
Fix from $2,300 2021-05-06
H8922 Firmware HIGH 8.8
CVE-2021-28151EPSS 28%

Hongdian H8922 3.0.5 devices allow OS command injection via shell metacharacters into the ip-address (aka Destination) field to the tools.cgi ping co…

No fix yet
Fix from $1,950 2021-05-06
H8922 Firmware MEDIUM 6.5
CVE-2021-28149EPSS 16%

Hongdian H8922 3.0.5 devices allow Directory Traversal. The /log_download.cgi log export handler does not validate user input and allows a remote att…

No fix yet
Fix from $1,600 2021-05-06
H8922 Firmware MEDIUM 5.5
CVE-2021-28150

Hongdian H8922 3.0.5 devices allow the unprivileged guest user to read cli.conf (with the administrator password and other sensitive data) via /backu…

No fix yet
Fix from $1,600 2021-05-06