Show filters
33 Total Results
Displaying 1-10 of 33
Sort by:
Attacker Value
Very High
CVE-2024-22729
Disclosure Date: January 25, 2024 (last updated February 02, 2024)
NETIS SYSTEMS MW5360 V1.0.1.3031 was discovered to contain a command injection vulnerability via the password parameter on the login page.
2
Attacker Value
Unknown
CVE-2025-1617
Disclosure Date: February 24, 2025 (last updated February 24, 2025)
A vulnerability, which was classified as problematic, was found in Netis WF2780 2.1.41925. This affects an unknown part of the component Wireless 2.4G Menu. The manipulation of the argument SSID leads to cross site scripting. It is possible to initiate the attack remotely. The vendor was contacted early about this disclosure but did not respond in any way.
0
Attacker Value
Unknown
CVE-2023-45468
Disclosure Date: October 13, 2023 (last updated October 17, 2023)
Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the pingWdogIp. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
0
Attacker Value
Unknown
CVE-2023-45467
Disclosure Date: October 13, 2023 (last updated October 20, 2023)
Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the ntpServIP parameter in the Time Settings.
0
Attacker Value
Unknown
CVE-2023-45466
Disclosure Date: October 13, 2023 (last updated October 17, 2023)
Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the pin_host parameter in the WPS Settings.
0
Attacker Value
Unknown
CVE-2023-45465
Disclosure Date: October 13, 2023 (last updated October 20, 2023)
Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the ddnsDomainName parameter in the Dynamic DNS settings.
0
Attacker Value
Unknown
CVE-2023-45464
Disclosure Date: October 13, 2023 (last updated October 20, 2023)
Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the servDomain parameter. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
0
Attacker Value
Unknown
CVE-2023-45463
Disclosure Date: October 13, 2023 (last updated October 17, 2023)
Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the hostName parameter in the FUN_0040dabc function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
0
Attacker Value
Unknown
CVE-2023-44860
Disclosure Date: October 06, 2023 (last updated October 12, 2023)
An issue in NETIS SYSTEMS N3Mv2 v.1.0.1.865 allows a remote attacker to cause a denial of service via the authorization component in the HTTP request.
0
Attacker Value
Unknown
CVE-2023-43893
Disclosure Date: October 02, 2023 (last updated October 09, 2023)
Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the wakeup_mac parameter in the Wake-On-LAN (WoL) function. This vulnerability is exploited via a crafted payload.
0