Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
alcatel-lucent vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2015-4587
Cross-site scripting (XSS) vulnerability in the Alcatel-Lucent CellPipe 7130 router with firmware 1.0.0.20h.HOL allows remote malicious users to inject arbitrary web script or HTML via the "Custom application" field in the "port triggering" menu.
Alcatel-lucent Cellpipe 7130 Router Firmware 1.0.0.20h.hol
NA
CVE-2003-1108
The Session Initiation Protocol (SIP) implementation in Alcatel OmniPCX Enterprise 5.0 Lx allows remote malicious users to cause a denial of service and possibly execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.
Alcatel-lucent Omnipcx 5.0
NA
CVE-2007-1822
Alcatel-Lucent Lucent Technologies voice mail systems allow remote malicious users to retrieve or remove messages, or reconfigure mailboxes, by spoofing Calling Number Identification (CNID, aka Caller ID).
Alcatel-lucent Voice Mail System
5.4
CVSSv3
CVE-2015-8687
Multiple cross-site scripting (XSS) vulnerabilities in the Management Console in Alcatel-Lucent Motive Home Device Manager (HDM) prior to 4.2 allow remote malicious users to inject arbitrary web script or HTML via the (1) deviceTypeID parameter to DeviceType/getDeviceType.do; the...
Alcatel-lucent Motive Home Device Manager
NA
CVE-2007-0932
The (1) Aruba Mobility Controllers 200, 600, 2400, and 6000 and (2) Alcatel-Lucent OmniAccess Wireless 43xx and 6000 do not properly implement authentication and privilege assignment for the guest account, which allows remote malicious users to access administrative interfaces or...
Alcatel-lucent Omniaccess Wireless 43xx
Aruba Mobility Controller 800
Alcatel-lucent Omniaccess Wireless 6000
Aruba Mobility Controller 200
Aruba Mobility Controller 2400
Aruba Mobility Controller 6000
NA
CVE-2007-0931
Heap-based buffer overflow in the management interfaces in (1) Aruba Mobility Controllers 200, 800, 2400, and 6000 and (2) Alcatel-Lucent OmniAccess Wireless 43xx and 6000 allows remote malicious users to cause a denial of service (process crash) and possibly execute arbitrary co...
Aruba Mobility Controller 2400
Aruba Mobility Controller 6000
Aruba Mobility Controller 800
Alcatel-lucent Omniaccess Wireless 43xx
Alcatel-lucent Omniaccess Wireless 6000
Aruba Mobility Controller 200
6.1
CVSSv3
CVE-2014-3809
Cross-site scripting (XSS) vulnerability in the management interface in Alcatel-Lucent 1830 Photonic Service Switch (PSS) 6.0 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the myurl parameter to menu/pop.html.
Nokia 1830 Photonic Service Switch-4 Firmware
Nokia 1830 Photonic Service Switch-16 Firmware
Nokia 1830 Photonic Service Switch-32 Firmware
9.8
CVSSv3
CVE-2019-3918
The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 contains multiple hard coded credentials for the Telnet and SSH interfaces.
Nokia I-240w-q Gpon Ont Firmware 3fe54567bozj19
7.5
CVSSv3
CVE-2019-3917
The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 allows a remote, unauthenticated malicious user to enable telnetd on the router via a crafted HTTP request.
Nokia I-240w-q Gpon Ont Firmware 3fe54567bozj19
8.8
CVSSv3
CVE-2019-3919
The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to command injection via crafted HTTP request sent by a remote, authenticated malicious user to /GponForm/usb_restore_Form?script/.
Nokia I-240w-q Gpon Ont Firmware 3fe54567bozj19
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2021-35000
CVE-2024-4439
unauthorized
CVE-2024-0042
CVE-2024-31848
CVE-2023-40694
cache poisoning
CVE-2024-23707
firmware
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »