Show filters
100 Total Results
Displaying 61-70 of 100
Sort by:
Attacker Value
Unknown
CVE-2008-0228
Disclosure Date: January 10, 2008 (last updated October 04, 2023)
Cross-site request forgery (CSRF) vulnerability in apply.cgi in the Linksys WRT54GL Wireless-G Broadband Router with firmware 4.30.9 allows remote attackers to perform actions as administrators.
0
Attacker Value
Unknown
CVE-2007-5411
Disclosure Date: October 12, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the Linksys SPA941 VoIP Phone with firmware 5.1.8 allows remote attackers to inject arbitrary web script or HTML via the From header in a SIP message.
0
Attacker Value
Unknown
CVE-2007-3574
Disclosure Date: July 05, 2007 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in setup.cgi on the Cisco Linksys WAG54GS Wireless-G ADSL Gateway with 1.00.06 firmware allow remote attackers to inject arbitrary web script or HTML via the (1) c4_trap_ip_, (2) devname, (3) snmp_getcomm, or (4) snmp_setcomm parameter.
0
Attacker Value
Unknown
CVE-2007-2270
Disclosure Date: April 25, 2007 (last updated October 04, 2023)
The Linksys SPA941 VoIP Phone allows remote attackers to cause a denial of service (device reboot) via a 0377 (0xff) character in the From header, and possibly certain other locations, in a SIP INVITE request.
0
Attacker Value
Unknown
CVE-2007-1585
Disclosure Date: March 21, 2007 (last updated October 04, 2023)
The Linksys WAG200G with firmware 1.01.01, WRT54GC 2 with firmware 1.00.7, and WRT54GC 1 with firmware 1.03.0 and earlier allow remote attackers to obtain sensitive information (passwords and configuration data) via a packet to UDP port 916. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2006-7121
Disclosure Date: March 06, 2007 (last updated October 04, 2023)
The HTTP server in Linksys SPA-921 VoIP Desktop Phone allows remote attackers to cause a denial of service (reboot) via (1) a long URL, or a long (2) username or (3) password during Basic Authentication.
0
Attacker Value
Unknown
CVE-2006-6411
Disclosure Date: December 10, 2006 (last updated October 04, 2023)
PhoneCtrl.exe in Linksys WIP 330 Wireless-G IP Phone 1.00.06A allows remote attackers to cause a denial of service (crash) via a TCP SYN scan, as demonstrated using TCP ports 1-65535 with nmap.
0
Attacker Value
Unknown
CVE-2006-5882
Disclosure Date: November 14, 2006 (last updated October 04, 2023)
Stack-based buffer overflow in the Broadcom BCMWL5.SYS wireless device driver 3.50.21.10, as used in Cisco Linksys WPC300N Wireless-N Notebook Adapter before 4.100.15.5 and other products, allows remote attackers to execute arbitrary code via an 802.11 response frame containing a long SSID field.
0
Attacker Value
Unknown
CVE-2006-5202
Disclosure Date: October 10, 2006 (last updated October 04, 2023)
Linksys WRT54g firmware 1.00.9 does not require credentials when making configuration changes, which allows remote attackers to modify arbitrary configurations via a direct request to Security.tri, as demonstrated using the SecurityMode and layout parameters, a different issue than CVE-2006-2559.
0
Attacker Value
Unknown
CVE-2006-2559
Disclosure Date: May 24, 2006 (last updated October 04, 2023)
Linksys WRT54G Wireless-G Broadband Router allows remote attackers to bypass access restrictions and conduct unauthorized operations via a UPnP request with a modified InternalClient parameter, which is not validated, as demonstrated by using AddPortMapping to forward arbitrary traffic.
0