Show filters
32 Total Results
Displaying 1-10 of 32
Sort by:
Attacker Value
Very High

CVE-2024-22729

Disclosure Date: January 25, 2024 (last updated February 02, 2024)
NETIS SYSTEMS MW5360 V1.0.1.3031 was discovered to contain a command injection vulnerability via the password parameter on the login page.
Attacker Value
Unknown

CVE-2023-45468

Disclosure Date: October 13, 2023 (last updated October 17, 2023)
Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the pingWdogIp. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
Attacker Value
Unknown

CVE-2023-45467

Disclosure Date: October 13, 2023 (last updated October 20, 2023)
Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the ntpServIP parameter in the Time Settings.
Attacker Value
Unknown

CVE-2023-45466

Disclosure Date: October 13, 2023 (last updated October 17, 2023)
Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the pin_host parameter in the WPS Settings.
Attacker Value
Unknown

CVE-2023-45465

Disclosure Date: October 13, 2023 (last updated October 20, 2023)
Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the ddnsDomainName parameter in the Dynamic DNS settings.
Attacker Value
Unknown

CVE-2023-45464

Disclosure Date: October 13, 2023 (last updated October 20, 2023)
Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the servDomain parameter. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
Attacker Value
Unknown

CVE-2023-45463

Disclosure Date: October 13, 2023 (last updated October 17, 2023)
Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the hostName parameter in the FUN_0040dabc function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
Attacker Value
Unknown

CVE-2023-44860

Disclosure Date: October 06, 2023 (last updated October 12, 2023)
An issue in NETIS SYSTEMS N3Mv2 v.1.0.1.865 allows a remote attacker to cause a denial of service via the authorization component in the HTTP request.
Attacker Value
Unknown

CVE-2023-43893

Disclosure Date: October 02, 2023 (last updated October 09, 2023)
Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the wakeup_mac parameter in the Wake-On-LAN (WoL) function. This vulnerability is exploited via a crafted payload.
Attacker Value
Unknown

CVE-2023-43892

Disclosure Date: October 02, 2023 (last updated October 09, 2023)
Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the Hostname parameter within the WAN settings. This vulnerability is exploited via a crafted payload.