Show filters
51 Total Results
Displaying 31-40 of 51
Sort by:
Attacker Value
Unknown
CVE-2013-6952
Disclosure Date: February 22, 2014 (last updated October 05, 2023)
The Belkin WeMo Home Automation firmware before 3949 has a hardcoded GPG key, which makes it easier for remote attackers to spoof firmware updates and execute arbitrary code via crafted signed data.
0
Attacker Value
Unknown
CVE-2013-6950
Disclosure Date: February 22, 2014 (last updated October 05, 2023)
The Belkin WeMo Home Automation firmware before 3949 does not use SSL for the distribution feed, which allows man-in-the-middle attackers to install arbitrary firmware by spoofing a distribution server.
0
Attacker Value
Unknown
CVE-2013-3087
Disclosure Date: January 30, 2014 (last updated October 05, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Belkin N900 router allow remote attackers to inject arbitrary web script or HTML via the (1) ssid2 parameter to wl_channel.html or (2) guest_psk parameter to wl_guest.html.
0
Attacker Value
Unknown
CVE-2013-3084
Disclosure Date: January 30, 2014 (last updated October 05, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Belkin Model F5D8236-4 v2 router allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2013-3090
Disclosure Date: January 30, 2014 (last updated October 05, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Belkin N300 router allow remote attackers to inject arbitrary web script or HTML via the Guest Access PSK field to wireless_guest2_print.stm or other unspecified vectors.
0
Attacker Value
Unknown
CVE-2012-6371
Disclosure Date: December 31, 2012 (last updated October 05, 2023)
The WPA2 implementation on the Belkin N900 F9K1104v1 router establishes a WPS PIN based on 6 digits of the LAN/WLAN MAC address, which makes it easier for remote attackers to obtain access to a Wi-Fi network by reading broadcast packets, a different vulnerability than CVE-2012-4366.
0
Attacker Value
Unknown
CVE-2012-4366
Disclosure Date: November 20, 2012 (last updated October 05, 2023)
Belkin wireless routers Surf N150 Model F7D1301v1, N900 Model F9K1104v1, N450 Model F9K1105V2, and N300 Model F7D2301v1 generate a predictable default WPA2-PSK passphrase based on eight digits of the WAN MAC address, which allows remote attackers to access the network by sniffing the beacon frames.
0
Attacker Value
Unknown
CVE-2008-7115
Disclosure Date: August 28, 2009 (last updated October 04, 2023)
The web interface to the Belkin Wireless G router and ADSL2 modem F5D7632-4V6 with firmware 6.01.08 allows remote attackers to bypass authentication and gain administrator privileges via a direct request to (1) statusprocess.exe, (2) system_all.exe, or (3) restore.exe in cgi-bin/. NOTE: the setup_dns.exe vector is already covered by CVE-2008-1244.
0
Attacker Value
Unknown
CVE-2008-1242
Disclosure Date: March 10, 2008 (last updated October 04, 2023)
The control panel on the Belkin F5D7230-4 router with firmware 9.01.10 maintains authentication state by IP address, which allows remote attackers to bypass authentication by establishing a session from a source IP address of a previously authenticated user, a different vulnerability than CVE-2005-3802.
0
Attacker Value
Unknown
CVE-2008-1244
Disclosure Date: March 10, 2008 (last updated October 04, 2023)
cgi-bin/setup_dns.exe on the Belkin F5D7230-4 router with firmware 9.01.10 does not require authentication, which allows remote attackers to perform administrative actions, as demonstrated by changing a DNS server via the dns1_1, dns1_2, dns1_3, and dns1_4 parameters. NOTE: it was later reported that F5D7632-4V6 with firmware 6.01.08 is also affected.
0