Show filters
34 Total Results
Displaying 1-10 of 34
Sort by:
Attacker Value
Unknown

CVE-2023-43757

Disclosure Date: November 16, 2023 (last updated December 02, 2023)
Inadequate encryption strength vulnerability in multiple routers provided by ELECOM CO.,LTD. and LOGITEC CORPORATION allows a network-adjacent unauthenticated attacker to guess the encryption key used for wireless LAN communication and intercept the communication. As for the affected products/versions, see the information provided by the vendor under [References] section.
Attacker Value
Unknown

CVE-2023-40796

Disclosure Date: August 25, 2023 (last updated March 07, 2024)
Phicomm k2 v22.6.529.216 was discovered to contain a command injection vulnerability via the function luci.sys.call.
Attacker Value
Unknown

CVE-2023-40069

Disclosure Date: August 18, 2023 (last updated October 08, 2023)
OS command injection vulnerability in ELECOM wireless LAN routers allows an attacker who can access the product to execute an arbitrary OS command by sending a specially crafted request. Affected products and versions are as follows: WRC-F1167ACF all versions, WRC-1750GHBK all versions, WRC-1167GHBK2 all versions, WRC-1750GHBK2-I all versions, and WRC-1750GHBK-E all versions.
Attacker Value
Unknown

CVE-2023-39455

Disclosure Date: August 18, 2023 (last updated October 08, 2023)
OS command injection vulnerability in ELECOM wireless LAN routers allows an authenticated user to execute an arbitrary OS command by sending a specially crafted request. Affected products and versions are as follows: WRC-600GHBK-A all versions, WRC-1467GHBK-A all versions, WRC-1900GHBK-A all versions, WRC-733FEBK2-A all versions, WRC-F1167ACF2 all versions, WRC-1467GHBK-S all versions, and WRC-1900GHBK-S all versions.
Attacker Value
Unknown

CVE-2023-39445

Disclosure Date: August 18, 2023 (last updated October 08, 2023)
Hidden functionality vulnerability in LAN-WH300N/RE all versions provided by LOGITEC CORPORATION allows an unauthenticated attacker to execute arbitrary code by sending a specially crafted file to the product's certain management console.
Attacker Value
Unknown

CVE-2023-30702

Disclosure Date: August 10, 2023 (last updated October 08, 2023)
Stack overflow vulnerability in SSHDCPAPP TA prior to "SAMSUNG ELECTONICS, CO, LTD. - System Hardware Update - 7/13/2023" in Windows Update for Galaxy book Go, Galaxy book Go 5G, Galaxy book2 Go and Galaxy book2 Pro 360 allows local attacker to execute arbitrary code.
Attacker Value
Unknown

CVE-2023-30695

Disclosure Date: August 10, 2023 (last updated October 08, 2023)
Out-of-bounds Write vulnerability in SSHDCPAPP TA prior to "SAMSUNG ELECTONICS, CO, LTD. - System Hardware Update - 7/13/2023" in Windows Update for Galaxy book Go, Galaxy book Go 5G, Galaxy book2 Go and Galaxy book2 Pro 360 allows local attacker to execute arbitrary code.
Attacker Value
Unknown

CVE-2022-48073

Disclosure Date: January 27, 2023 (last updated October 08, 2023)
Phicomm K2G v22.6.3.20 was discovered to store the root and admin passwords in plaintext.
Attacker Value
Unknown

CVE-2022-48072

Disclosure Date: January 27, 2023 (last updated October 08, 2023)
Phicomm K2G v22.6.3.20 was discovered to contain a command injection vulnerability via the autoUpTime parameter in the automatic upgrade function.
Attacker Value
Unknown

CVE-2022-48071

Disclosure Date: January 27, 2023 (last updated October 08, 2023)
Phicomm K2 v22.6.534.263 was discovered to store the root and admin passwords in plaintext.