Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
airbox_firmware vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2018-18376
goform/getWlanClientInfo in Orange AirBox Y858_FL_01.16_04 allows remote malicious users to discover information about currently connected devices (hostnames, IP addresses, MAC addresses, and connection time) via the rand parameter.
Orange Airbox Firmware Y858 Fl 01.16 04
1 Github repository
9.8
CVSSv3
CVE-2018-18375
goform/getProfileList in Orange AirBox Y858_FL_01.16_04 allows malicious users to extract APN data (name, number, username, and password) via the rand parameter.
Orange Airbox Firmware Y858 Fl 01.16 04
1 Github repository
7.5
CVSSv3
CVE-2018-18377
goform/setReset on Orange AirBox Y858_FL_01.16_04 devices allows malicious users to reset a router to factory settings, which can be used to login using the default admin:admin credentials.
Orange Airbox Firmware Y858 Fl 01.16 04
1 Github repository
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-21111
CVE-2024-32884
IDOR
CVE-2023-1000
CVE-2024-33260
CVE-2024-3682
reflected XSS
race condition
CVE-2024-3400
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started