M50
by IP-COM
CVEs (15)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-45711 | 0.01 | — | 0.16 | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a command injection vulnerability via the hostname parameter in the formSetNetCheckTools function. | |||
| CVE-2022-45721 | 0.00 | — | 0.00 | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the picName parameter in the formDelWewifiPic function. | |||
| CVE-2022-45709 | 0.00 | — | 0.05 | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple command injection vulnerabilities via the pEnable, pLevel, and pModule parameters in the formSetDebugCfg function. | |||
| CVE-2022-45720 | 0.00 | — | 0.00 | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffer overflows via the ip, mac, and remark parameters in the formIPMacBindModify function. | |||
| CVE-2022-45716 | 0.00 | — | 0.00 | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the indexSet parameter in the formIPMacBindDel function. | |||
| CVE-2022-45718 | 0.00 | — | 0.00 | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the rules parameter in the formIPMacBindAdd function. | |||
| CVE-2022-45706 | 0.00 | — | 0.00 | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the hostname parameter in the formSetNetCheckTools function. | |||
| CVE-2022-45707 | 0.00 | — | 0.00 | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the rules parameter in the formAddDnsHijack function. | |||
| CVE-2022-45708 | 0.00 | — | 0.00 | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the sPortMapIndex parameter in the formDelPortMapping function. | |||
| CVE-2022-45710 | 0.00 | — | 0.00 | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffer overflows via the pEnable, pLevel, and pModule parameters in the formSetDebugCfg function. | |||
| CVE-2022-45712 | 0.00 | — | 0.00 | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the rules parameter in the formAddDnsForward function. | |||
| CVE-2022-45714 | 0.00 | — | 0.00 | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the indexSet parameter in the formQOSRuleDel function. | |||
| CVE-2022-45717 | 0.00 | — | 0.05 | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a command injection vulnerability via the usbPartitionName parameter in the formSetUSBPartitionUmount function. This vulnerability is exploited via a crafted GET request. | |||
| CVE-2022-45715 | 0.00 | — | 0.00 | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffer overflows via the pLanPortRange and pWanPortRange parameters in the formSetPortMapping function. | |||
| CVE-2022-45719 | 0.00 | — | 0.00 | Dec 23, 2022 | IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the gotoUrl parameter in the formPortalAuth function. |
- CVE-2022-45711Dec 23, 2022risk 0.01cvss —epss 0.16
IP-COM M50 V15.11.0.33(10768) was discovered to contain a command injection vulnerability via the hostname parameter in the formSetNetCheckTools function.
- CVE-2022-45721Dec 23, 2022risk 0.00cvss —epss 0.00
IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the picName parameter in the formDelWewifiPic function.
- CVE-2022-45709Dec 23, 2022risk 0.00cvss —epss 0.05
IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple command injection vulnerabilities via the pEnable, pLevel, and pModule parameters in the formSetDebugCfg function.
- CVE-2022-45720Dec 23, 2022risk 0.00cvss —epss 0.00
IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffer overflows via the ip, mac, and remark parameters in the formIPMacBindModify function.
- CVE-2022-45716Dec 23, 2022risk 0.00cvss —epss 0.00
IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the indexSet parameter in the formIPMacBindDel function.
- CVE-2022-45718Dec 23, 2022risk 0.00cvss —epss 0.00
IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the rules parameter in the formIPMacBindAdd function.
- CVE-2022-45706Dec 23, 2022risk 0.00cvss —epss 0.00
IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the hostname parameter in the formSetNetCheckTools function.
- CVE-2022-45707Dec 23, 2022risk 0.00cvss —epss 0.00
IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the rules parameter in the formAddDnsHijack function.
- CVE-2022-45708Dec 23, 2022risk 0.00cvss —epss 0.00
IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the sPortMapIndex parameter in the formDelPortMapping function.
- CVE-2022-45710Dec 23, 2022risk 0.00cvss —epss 0.00
IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffer overflows via the pEnable, pLevel, and pModule parameters in the formSetDebugCfg function.
- CVE-2022-45712Dec 23, 2022risk 0.00cvss —epss 0.00
IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the rules parameter in the formAddDnsForward function.
- CVE-2022-45714Dec 23, 2022risk 0.00cvss —epss 0.00
IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the indexSet parameter in the formQOSRuleDel function.
- CVE-2022-45717Dec 23, 2022risk 0.00cvss —epss 0.05
IP-COM M50 V15.11.0.33(10768) was discovered to contain a command injection vulnerability via the usbPartitionName parameter in the formSetUSBPartitionUmount function. This vulnerability is exploited via a crafted GET request.
- CVE-2022-45715Dec 23, 2022risk 0.00cvss —epss 0.00
IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffer overflows via the pLanPortRange and pWanPortRange parameters in the formSetPortMapping function.
- CVE-2022-45719Dec 23, 2022risk 0.00cvss —epss 0.00
IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the gotoUrl parameter in the formPortalAuth function.