VYPR

N3Mv2

by Netis

CVEs (11)

  • CVE-2023-44860Oct 6, 2023
    risk 0.01cvss epss 0.10

    An issue in NETIS SYSTEMS N3Mv2 v.1.0.1.865 allows a remote attacker to cause a denial of service via the authorization component in the HTTP request.

  • CVE-2023-45468Oct 13, 2023
    risk 0.00cvss epss 0.00

    Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the pingWdogIp. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

  • CVE-2023-45464Oct 13, 2023
    risk 0.00cvss epss 0.00

    Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the servDomain parameter. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

  • CVE-2023-45463Oct 13, 2023
    risk 0.00cvss epss 0.00

    Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the hostName parameter in the FUN_0040dabc function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

  • CVE-2023-45467Oct 13, 2023
    risk 0.00cvss epss 0.01

    Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the ntpServIP parameter in the Time Settings.

  • CVE-2023-45465Oct 13, 2023
    risk 0.00cvss epss 0.01

    Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the ddnsDomainName parameter in the Dynamic DNS settings.

  • CVE-2023-45466Oct 13, 2023
    risk 0.00cvss epss 0.01

    Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the pin_host parameter in the WPS Settings.

  • CVE-2023-43890Oct 2, 2023
    risk 0.00cvss epss 0.01

    Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability in the diagnostic tools page. This vulnerability is exploited via a crafted HTTP request.

  • CVE-2023-43893Oct 2, 2023
    risk 0.00cvss epss 0.02

    Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the wakeup_mac parameter in the Wake-On-LAN (WoL) function. This vulnerability is exploited via a crafted payload.

  • CVE-2023-43891Oct 2, 2023
    risk 0.00cvss epss 0.02

    Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability in the Changing Username and Password function. This vulnerability is exploited via a crafted payload.

  • CVE-2023-43892Oct 2, 2023
    risk 0.00cvss epss 0.03

    Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the Hostname parameter within the WAN settings. This vulnerability is exploited via a crafted payload.