Show filters
184 Total Results
Displaying 101-110 of 184
Sort by:
Attacker Value
Unknown
CVE-2022-37779
Disclosure Date: September 08, 2022 (last updated October 08, 2023)
Phicomm FIR151B A2, FIR302E A2, FIR300B A2, FIR303B A2 routers V3.0.1.17 were discovered to contain a remote command execution (RCE) vulnerability via the sendnum parameter of the ping function.
0
Attacker Value
Unknown
CVE-2022-37778
Disclosure Date: September 08, 2022 (last updated October 08, 2023)
Phicomm FIR151B A2, FIR302E A2, FIR300B A2, FIR303B A2 routers V3.0.1.17 were discovered to contain a remote command execution (RCE) vulnerability via the current_time parameter of the time function.
0
Attacker Value
Unknown
CVE-2022-37777
Disclosure Date: September 08, 2022 (last updated October 08, 2023)
Phicomm FIR151B A2, FIR302E A2, FIR300B A2, FIR303B A2 routers 3.0.1.17 and earlier were discovered to contain a remote command execution (RCE) vulnerability via the trHops parameter of the tracert function.
0
Attacker Value
Unknown
CVE-2022-37780
Disclosure Date: September 07, 2022 (last updated October 08, 2023)
Phicomm FIR151B A2, FIR302E A2, FIR300B A2, FIR303B A2 routers V3.0.1.17 were discovered to contain a remote command execution (RCE) vulnerability via the pingAddr parameter of the tracert function.
0
Attacker Value
Unknown
CVE-2022-21744
Disclosure Date: July 06, 2022 (last updated February 24, 2025)
In Modem 2G RR, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution when decoding GPRS Packet Neighbour Cell Data (PNCD) improper neighbouring cell size with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00810064; Issue ID: ALPS06641626.
0
Attacker Value
Unknown
CVE-2022-20083
Disclosure Date: July 06, 2022 (last updated February 24, 2025)
In Modem 2G/3G CC, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution when decoding combined FACILITY with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00803883; Issue ID: MOLY00803883.
0
Attacker Value
Unknown
CVE-2022-33314
Disclosure Date: June 30, 2022 (last updated February 24, 2025)
Multiple command injection vulnerabilities exist in the web_server action endpoints functionalities of Robustel R1510 3.3.0. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.The `/action/import_sdk_file/` API is affected by command injection vulnerability.
0
Attacker Value
Unknown
CVE-2022-33327
Disclosure Date: June 30, 2022 (last updated February 24, 2025)
Multiple command injection vulnerabilities exist in the web_server ajax endpoints functionalities of Robustel R1510 3.3.0. A specially-crafted network packets can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.The `/ajax/remove_sniffer_raw_log/` API is affected by a command injection vulnerability.
0
Attacker Value
Unknown
CVE-2022-28127
Disclosure Date: June 30, 2022 (last updated February 24, 2025)
A data removal vulnerability exists in the web_server /action/remove/ API functionality of Robustel R1510 3.3.0. A specially-crafted network request can lead to arbitrary file deletion. An attacker can send a sequence of requests to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2022-32585
Disclosure Date: June 30, 2022 (last updated February 24, 2025)
A command execution vulnerability exists in the clish art2 functionality of Robustel R1510 3.3.0. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger this vulnerability.
0