Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2020-16204

Disclosure Date: September 01, 2020 (last updated February 22, 2025)
The affected product is vulnerable due to an undocumented interface found on the device, which may allow an attacker to execute commands as root on the device on the N-Tron 702-W / 702M12-W (all versions).
Attacker Value
Unknown

CVE-2020-16208

Disclosure Date: September 01, 2020 (last updated February 22, 2025)
The affected product is vulnerable to cross-site request forgery, which may allow an attacker to modify different configurations of a device by luring an authenticated user to click on a crafted link on the N-Tron 702-W / 702M12-W (all versions).
Attacker Value
Unknown

CVE-2020-16206

Disclosure Date: September 01, 2020 (last updated February 22, 2025)
The affected product is vulnerable to stored cross-site scripting, which may allow an attacker to remotely execute arbitrary code to gain access to sensitive data on the N-Tron 702-W / 702M12-W (all versions).
Attacker Value
Unknown

CVE-2020-16210

Disclosure Date: September 01, 2020 (last updated February 22, 2025)
The affected product is vulnerable to reflected cross-site scripting, which may allow an attacker to remotely execute arbitrary code and perform actions in the context of an attacked user on the N-Tron 702-W / 702M12-W (all versions).
Attacker Value
Unknown

CVE-2017-16544

Disclosure Date: November 20, 2017 (last updated November 26, 2024)
In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and results in executing any escape sequence in the terminal. This could potentially result in code execution, arbitrary file writes, or other attacks.