Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
greenpacket dx-350 firmware 2.8.9.5-g1.4.8-atheeb vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2017-9932
Green Packet DX-350 Firmware version v2.8.9.5-g1.4.8-atheeb has a default password of admin for the admin account.
Greenpacket Dx-350 Firmware 2.8.9.5-g1.4.8-atheeb
4.3
CVSSv2
CVE-2017-9931
Cross-Site Scripting (XSS) exists in Green Packet DX-350 Firmware version v2.8.9.5-g1.4.8-atheeb, as demonstrated by the action parameter to ajax.cgi.
Greenpacket Dx-350 Firmware 2.8.9.5-g1.4.8-atheeb
6.8
CVSSv2
CVE-2017-9930
Cross-Site Request Forgery (CSRF) exists in Green Packet DX-350 Firmware version v2.8.9.5-g1.4.8-atheeb, as demonstrated by a request to ajax.cgi that enables UPnP.
Greenpacket Dx-350 Firmware 2.8.9.5-g1.4.8-atheeb
7.5
CVSSv2
CVE-2017-9980
In Green Packet DX-350 Firmware version v2.8.9.5-g1.4.8-atheeb, the "PING" (aka tag_ipPing) feature within the web interface allows performing command injection, via the "pip" parameter.
Greenpacket Dx-350 Firmware 2.8.9.5-g1.4.8-atheeb
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started