VYPR

Tc7230 Steb Firmware

by Technicolor

CVEs (2)

  • CVE-2019-19495CriJan 8, 2020
    risk 0.64cvss 9.8epss 0.04

    The web interface on the Technicolor TC7230 STEB 01.25 is vulnerable to DNS rebinding, which allows a remote attacker to configure the cable modem via JavaScript in a victim's browser. The attacker can then configure the cable modem to port forward the modem's internal TELNET…

  • CVE-2019-19494HigJan 9, 2020
    risk 0.62cvss 8.8epss 0.23

    Broadcom based cable modems across multiple vendors are vulnerable to a buffer overflow, which allows a remote attacker to execute arbitrary code at the kernel level via JavaScript run in a victim's browser. Examples of affected products include Sagemcom F@st 3890 prior to…