VYPR

CX2L Router

by Motorola

CVEs (11)

  • CVE-2020-21937CriJul 21, 2021
    risk 0.64cvss 9.8epss 0.05

    An command injection vulnerability in HNAP1/SetWLanApcliSettings of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to execute arbitrary system commands.

  • CVE-2020-21935CriJul 21, 2021
    risk 0.64cvss 9.8epss 0.04

    A command injection vulnerability in HNAP1/GetNetworkTomographySettings of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to execute arbitrary code.

  • CVE-2023-31531HigMay 11, 2023
    risk 0.57cvss 8.8epss 0.02

    Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the tomography_ping_number parameter.

  • CVE-2023-31530HigMay 11, 2023
    risk 0.57cvss 8.8epss 0.02

    Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the smartqos_priority_devices parameter.

  • CVE-2023-31529HigMay 11, 2023
    risk 0.57cvss 8.8epss 0.02

    Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the system_time_timezone parameter.

  • CVE-2023-31528HigMay 11, 2023
    risk 0.57cvss 8.8epss 0.02

    Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the staticroute_list parameter.

  • CVE-2024-45880HigOct 8, 2024
    risk 0.52cvss 8.0epss 0.01

    A command injection vulnerability exists in Motorola CX2L router v1.0.2 and below. The vulnerability is present in the SetStationSettings function. The system directly invokes the system function to execute commands for setting parameters such as MAC address without proper input…

  • CVE-2020-21934HigJul 21, 2021
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n where authentication to download the Syslog could be bypassed.

  • CVE-2020-21933HigJul 21, 2021
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n where the admin password and private key could be found in the log tar package.

  • CVE-2020-21936MedJul 21, 2021
    risk 0.35cvss 5.3epss 0.01

    An issue in HNAP1/GetMultipleHNAPs of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to access the components GetStationSettings, GetWebsiteFilterSettings and GetNetworkSettings without authentication.

  • CVE-2024-25360MedFeb 12, 2024
    risk 0.34cvss 5.3epss 0.00

    A hidden interface in Motorola CX2L Router firmware v1.0.1 leaks information regarding the SystemWizardStatus component via sending a crafted request to device_web_ip.