Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
alcatel-lucent vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2007-1822
Alcatel-Lucent Lucent Technologies voice mail systems allow remote malicious users to retrieve or remove messages, or reconfigure mailboxes, by spoofing Calling Number Identification (CNID, aka Caller ID).
Alcatel-lucent Voice Mail System
5.4
CVSSv3
CVE-2015-8687
Multiple cross-site scripting (XSS) vulnerabilities in the Management Console in Alcatel-Lucent Motive Home Device Manager (HDM) prior to 4.2 allow remote malicious users to inject arbitrary web script or HTML via the (1) deviceTypeID parameter to DeviceType/getDeviceType.do; the...
Alcatel-lucent Motive Home Device Manager
NA
CVE-2015-4587
Cross-site scripting (XSS) vulnerability in the Alcatel-Lucent CellPipe 7130 router with firmware 1.0.0.20h.HOL allows remote malicious users to inject arbitrary web script or HTML via the "Custom application" field in the "port triggering" menu.
Alcatel-lucent Cellpipe 7130 Router Firmware 1.0.0.20h.hol
NA
CVE-2007-0931
Heap-based buffer overflow in the management interfaces in (1) Aruba Mobility Controllers 200, 800, 2400, and 6000 and (2) Alcatel-Lucent OmniAccess Wireless 43xx and 6000 allows remote malicious users to cause a denial of service (process crash) and possibly execute arbitrary co...
Aruba Mobility Controller 6000
Alcatel-lucent Omniaccess Wireless 43xx
Alcatel-lucent Omniaccess Wireless 6000
Aruba Mobility Controller 800
Aruba Mobility Controller 200
Aruba Mobility Controller 2400
NA
CVE-2007-0932
The (1) Aruba Mobility Controllers 200, 600, 2400, and 6000 and (2) Alcatel-Lucent OmniAccess Wireless 43xx and 6000 do not properly implement authentication and privilege assignment for the guest account, which allows remote malicious users to access administrative interfaces or...
Aruba Mobility Controller 6000
Alcatel-lucent Omniaccess Wireless 43xx
Alcatel-lucent Omniaccess Wireless 6000
Aruba Mobility Controller 800
Aruba Mobility Controller 200
Aruba Mobility Controller 2400
NA
CVE-2015-4586
Cross-site request forgery (CSRF) vulnerability in Alcatel-Lucent CellPipe 7130 RG 5Ae.M2013 HOL with firmware 1.0.0.20h.HOL allows remote malicious users to hijack the authentication of administrators for requests that create a user account via an add_user action in a request to...
Alcatel-lucent Cellpipe 7130 Rg 5ae.m2013 Hol Firmware 1.0.0.20h.hol
6.1
CVSSv3
CVE-2014-3809
Cross-site scripting (XSS) vulnerability in the management interface in Alcatel-Lucent 1830 Photonic Service Switch (PSS) 6.0 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the myurl parameter to menu/pop.html.
Nokia 1830 Photonic Service Switch-4 Firmware
Nokia 1830 Photonic Service Switch-16 Firmware
Nokia 1830 Photonic Service Switch-32 Firmware
9.8
CVSSv3
CVE-2019-3918
The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 contains multiple hard coded credentials for the Telnet and SSH interfaces.
Nokia I-240w-q Gpon Ont Firmware 3fe54567bozj19
7.5
CVSSv3
CVE-2019-3917
The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 allows a remote, unauthenticated malicious user to enable telnetd on the router via a crafted HTTP request.
Nokia I-240w-q Gpon Ont Firmware 3fe54567bozj19
8.8
CVSSv3
CVE-2019-3919
The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to command injection via crafted HTTP request sent by a remote, authenticated malicious user to /GponForm/usb_restore_Form?script/.
Nokia I-240w-q Gpon Ont Firmware 3fe54567bozj19
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27802
template injection
CVE-2024-0044
code injection
CVE-2024-35474
CVE-2024-27857
CVE-2024-23251
CVE-2024-23692
physical
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »