VYPR

N3Mv2

by Netis

CVEs (11)

  • CVE-2023-45467CriOct 13, 2023
    risk 0.64cvss 9.8epss 0.02

    Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the ntpServIP parameter in the Time Settings.

  • CVE-2023-45466CriOct 13, 2023
    risk 0.64cvss 9.8epss 0.02

    Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the pin_host parameter in the WPS Settings.

  • CVE-2023-45465CriOct 13, 2023
    risk 0.64cvss 9.8epss 0.02

    Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the ddnsDomainName parameter in the Dynamic DNS settings.

  • CVE-2023-43893CriOct 2, 2023
    risk 0.64cvss 9.8epss 0.02

    Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the wakeup_mac parameter in the Wake-On-LAN (WoL) function. This vulnerability is exploited via a crafted payload.

  • CVE-2023-43892CriOct 2, 2023
    risk 0.64cvss 9.8epss 0.02

    Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the Hostname parameter within the WAN settings. This vulnerability is exploited via a crafted payload.

  • CVE-2023-43891CriOct 2, 2023
    risk 0.64cvss 9.8epss 0.02

    Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability in the Changing Username and Password function. This vulnerability is exploited via a crafted payload.

  • CVE-2023-43890HigOct 2, 2023
    risk 0.57cvss 8.8epss 0.03

    Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability in the diagnostic tools page. This vulnerability is exploited via a crafted HTTP request.

  • CVE-2023-44860HigOct 6, 2023
    risk 0.50cvss 7.5epss 0.20

    An issue in NETIS SYSTEMS N3Mv2 v.1.0.1.865 allows a remote attacker to cause a denial of service via the authorization component in the HTTP request.

  • CVE-2023-45468HigOct 13, 2023
    risk 0.49cvss 7.5epss 0.01

    Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the pingWdogIp. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

  • CVE-2023-45464HigOct 13, 2023
    risk 0.49cvss 7.5epss 0.01

    Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the servDomain parameter. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

  • CVE-2023-45463HigOct 13, 2023
    risk 0.49cvss 7.5epss 0.01

    Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the hostName parameter in the FUN_0040dabc function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.