VYPR

Inrouter 900 Firmware

by InHand Networks

CVEs (12)

  • CVE-2022-27276CriApr 10, 2022
    risk 0.64cvss 9.8epss 0.03

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the function sub_10F2C. This vulnerability is triggered via a crafted packet.

  • CVE-2022-27275CriApr 10, 2022
    risk 0.64cvss 9.8epss 0.03

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the function sub_122D0. This vulnerability is triggered via a crafted packet.

  • CVE-2022-27274CriApr 10, 2022
    risk 0.64cvss 9.8epss 0.03

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the function sub_12028. This vulnerability is triggered via a crafted packet.

  • CVE-2022-27273CriApr 10, 2022
    risk 0.64cvss 9.8epss 0.03

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the function sub_12168. This vulnerability is triggered via a crafted packet.

  • CVE-2022-27272CriApr 10, 2022
    risk 0.64cvss 9.8epss 0.03

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the function sub_1791C. This vulnerability is triggered via a crafted packet.

  • CVE-2022-27271CriApr 10, 2022
    risk 0.64cvss 9.8epss 0.03

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the component python-lib. This vulnerability is triggered via a crafted packet.

  • CVE-2022-27270CriApr 10, 2022
    risk 0.64cvss 9.8epss 0.03

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the component ipsec_secrets. This vulnerability is triggered via a crafted packet.

  • CVE-2022-27269CriApr 10, 2022
    risk 0.64cvss 9.8epss 0.04

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the component config_ovpn. This vulnerability is triggered via a crafted packet.

  • CVE-2022-27268CriApr 10, 2022
    risk 0.64cvss 9.8epss 0.04

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the component get_cgi_from_memory. This vulnerability is triggered via a crafted packet.

  • CVE-2022-27277CriApr 10, 2022
    risk 0.59cvss 9.1epss 0.01

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain an arbitrary file deletion vulnerability via the function sub_17C08.

  • CVE-2022-27279HigApr 10, 2022
    risk 0.49cvss 7.5epss 0.01

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain an arbitrary file read via the function sub_177E0.

  • CVE-2022-27280MedApr 10, 2022
    risk 0.35cvss 5.4epss 0.01

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the web_exec parameter at /apply.cgi.