Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
fw firmware vulnerabilities and exploits
(subscribe to this query)
5.6
CVSSv2
CVE-2018-12158
Insufficient input validation in BIOS update utility in Intel NUC FW kits downloaded before May 24, 2018 may allow a privileged user to potentially trigger a denial of service or information disclosure via local access.
Intel Next Unit Of Computing Firmware
4.6
CVSSv2
CVE-2019-14598
Improper Authentication in subsystem in Intel(R) CSME versions 12.0 up to and including 12.0.48 (IOT only: 12.0.56), versions 13.0 up to and including 13.0.20, versions 14.0 up to and including 14.0.10 may allow a privileged user to potentially enable escalation of privilege, den...
Intel Converged Security Management Engine Firmware
Netapp Steelstore Cloud Integrated Storage -
1 Article
10
CVSSv2
CVE-2017-2237
Toshiba Home gateway HEM-GW16A firmware HEM-GW16A-FW-V1.2.0 and previous versions. Toshiba Home gateway HEM-GW26A firmware HEM-GW26A-FW-V1.2.0 and previous versions allows an malicious user to execute arbitrary OS commands via unspecified vectors.
Toshiba Hem-gw16a Firmware
Toshiba Hem-gw26a Firmware
5
CVSSv2
CVE-2017-2235
Toshiba Home gateway HEM-GW16A firmware HEM-GW16A-FW-V1.2.0 and previous versions. Toshiba Home gateway HEM-GW26A firmware HEM-GW26A-FW-V1.2.0 and previous versions allows an malicious user to bypass access restriction to change the administrator account password via unspecified ...
Toshiba Hem-gw16a Firmware
Toshiba Hem-gw26a Firmware
7.5
CVSSv2
CVE-2017-2236
Toshiba Home gateway HEM-GW16A firmware HEM-GW16A-FW-V1.2.0 and previous versions, Toshiba Home gateway HEM-GW26A firmware HEM-GW26A-FW-V1.2.0 and previous versions uses hard-coded credentials, which may allow malicious users to perform operations on device with administrative pr...
Toshiba Hem-gw16a Firmware
Toshiba Hem-gw26a Firmware
7.5
CVSSv2
CVE-2017-2234
Toshiba Home gateway HEM-GW16A firmware HEM-GW16A-FW-V1.2.0 and previous versions, Toshiba Home gateway HEM-GW26A firmware HEM-GW26A-FW-V1.2.0 and previous versions may allow remote malicious users to access a non-documented developer screen to perform operations on device with a...
Toshiba Hem-gw16a Firmware
Toshiba Hem-gw26a Firmware
6.8
CVSSv2
CVE-2017-2238
Cross-site request forgery (CSRF) vulnerability in Toshiba Home gateway HEM-GW16A firmware HEM-GW16A-FW-V1.2.0 and previous versions and Toshiba Home gateway HEM-GW26A firmware HEM-GW26A-FW-V1.2.0 and previous versions allows remote malicious users to hijack the authentication of...
Toshiba Hem-gw16a Firmware
Toshiba Hem-gw26a Firmware
5.5
CVSSv2
CVE-2018-12979
An issue exists on WAGO e!DISPLAY 762-3000 through 762-3003 devices with firmware before FW 02. Weak permissions allow an authenticated user to overwrite critical files by abusing the unrestricted file upload in the WBM.
Wago 762-3000 Firmware
Wago 762-3001 Firmware
Wago 762-3002 Firmware
Wago 762-3003 Firmware
1 EDB exploit
6.5
CVSSv2
CVE-2018-12980
An issue exists on WAGO e!DISPLAY 762-3000 through 762-3003 devices with firmware before FW 02. The vulnerability allows an authenticated user to upload arbitrary files to the file system with the permissions of the web server.
Wago 762-3000 Firmware
Wago 762-3001 Firmware
Wago 762-3002 Firmware
Wago 762-3003 Firmware
1 EDB exploit
7.5
CVSSv2
CVE-2020-27540
Bash injection vulnerability and bypass of signature verification in Rostelecom CS-C2SHW 5.0.082.1. The camera reads firmware update configuration from SD card file vc\version.json. fw-sign parameter and from this configuration is directly inserted into a bash command. Firmware u...
Company Cs-c2shw Firmware 5.0.082.1
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27975
CVE-2024-2961
CVE-2024-20380
XML injection
HTML injection
CVE-2024-29204
CVE-2023-51795
memory leak
CVE-2024-3470
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »