Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
teltonika vulnerabilities and exploits
(subscribe to this query)
5.8
CVSSv3
CVE-2023-32348
Teltonika’s Remote Management System versions before 4.10.0 contain a virtual private network (VPN) hub feature for cross-device communication that uses OpenVPN. It connects new devices in a manner that allows the new device to communicate with all Teltonika devices connec...
Teltonika Remote Management System
9.8
CVSSv3
CVE-2023-2586
Teltonika’s Remote Management System versions 4.14.0 is vulnerable to an unauthorized attacker registering previously unregistered devices through the RMS platform. If the user has not disabled the "RMS management feature" enabled by default, then an attacker cou...
Teltonika Remote Management System 4.14.0
7.5
CVSSv3
CVE-2020-5772
Improper Input Validation in Teltonika firmware TRB2_R_00.02.04.01 allows a remote, authenticated malicious user to gain root privileges by uploading a malicious package file.
Teltonika-networks Trb245 Firmware 00.02.04.01
8.8
CVSSv3
CVE-2020-5770
Cross-site request forgery in Teltonika firmware TRB2_R_00.02.04.01 allows a remote malicious user to perform sensitive application actions by tricking legitimate users into clicking a crafted link.
Teltonika-networks Trb245 Firmware 00.02.04.01
7.5
CVSSv3
CVE-2020-5771
Improper Input Validation in Teltonika firmware TRB2_R_00.02.04.01 allows a remote, authenticated malicious user to gain root privileges by uploading a malicious backup archive.
Teltonika-networks Trb245 Firmware 00.02.04.01
8.8
CVSSv3
CVE-2020-5773
Improper Access Control in Teltonika firmware TRB2_R_00.02.04.01 allows a low privileged user to perform unauthorized write operations.
Teltonika-networks Trb245 Firmware 00.02.04.01
6.5
CVSSv3
CVE-2020-5784
Server-Side Request Forgery in Teltonika firmware TRB2_R_00.02.04.3 allows a low privileged user to cause the application to perform HTTP GET requests to arbitrary URLs.
Teltonika-networks Trb245 Firmware 00.02.04.03
6.1
CVSSv3
CVE-2020-5785
Insufficient output sanitization in Teltonika firmware TRB2_R_00.02.04.3 allows an unauthenticated malicious user to conduct reflected cross-site scripting via a crafted ‘action’ or ‘pkg_name’ parameter.
Teltonika-networks Trb245 Firmware 00.02.04.03
6.5
CVSSv3
CVE-2020-5787
Relative Path Traversal in Teltonika firmware TRB2_R_00.02.04.3 allows a remote, authenticated malicious user to delete arbitrary files on disk via the admin/services/packages/remove action.
Teltonika-networks Trb245 Firmware 00.02.04.03
6.5
CVSSv3
CVE-2020-5788
Relative Path Traversal in Teltonika firmware TRB2_R_00.02.04.3 allows a remote, authenticated malicious user to delete arbitrary files on disk via the admin/system/admin/certificates/delete action.
Teltonika-networks Trb245 Firmware 00.02.04.03
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37884
CVE-2024-6003
remote
brute force
information disclosure
CVE-2024-27801
CVE-2024-30078
CVE-2024-31870
CVE-2024-6042
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »