VYPR

CX2

by Motorola

CVEs (6)

  • CVE-2019-12297CriMay 23, 2019
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in scopd on Motorola routers CX2 1.01 and M2 1.01. There is a Use of an Externally Controlled Format String, reachable via TCP port 8010 or UDP port 8080.

  • CVE-2019-11322CriApr 18, 2019
    risk 0.64cvss 9.8epss 0.04

    An issue was discovered in Motorola CX2 1.01 and M2 1.01. There is a command injection in the function startRmtAssist in hnap, which leads to remote code execution via shell metacharacters in a JSON value.

  • CVE-2019-11320CriApr 18, 2019
    risk 0.64cvss 9.8epss 0.02

    In Motorola CX2 1.01 and M2 1.01, users can access the router's /priv_mgt.html web page to launch telnetd, as demonstrated by the 192.168.51.1 address.

  • CVE-2019-11319CriApr 18, 2019
    risk 0.64cvss 9.8epss 0.04

    An issue was discovered in Motorola CX2 1.01 and M2 1.01. There is a command injection in the function downloadFirmware in hnap, which leads to remote code execution via shell metacharacters in a JSON value.

  • CVE-2020-21932MedJul 21, 2021
    risk 0.35cvss 5.3epss 0.01

    A vulnerability in /Login.html of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to bypass login and obtain a partially authorized token and uid.

  • CVE-2019-11321MedApr 18, 2019
    risk 0.35cvss 5.3epss 0.01

    An issue was discovered in Motorola CX2 1.01 and M2 1.01. The router opens TCP port 8010. Users can send hnap requests to this port without authentication to obtain information such as the MAC addresses of connected client devices.