Icx500 Firmware
by Zenitel
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-64093 | Cri | 0.65 | 10.0 | 0.01 | Jan 9, 2026 | Remote Code Execution vulnerability that allows unauthenticated attackers to inject arbitrary commands into the hostname of the device. | ||
| CVE-2025-64092 | Hig | 0.49 | 7.5 | 0.00 | Jan 9, 2026 | This vulnerability allows unauthenticated attackers to inject an SQL request into GET request parameters and directly query the underlying database. |
- risk 0.65cvss 10.0epss 0.01
Remote Code Execution vulnerability that allows unauthenticated attackers to inject arbitrary commands into the hostname of the device.
- risk 0.49cvss 7.5epss 0.00
This vulnerability allows unauthenticated attackers to inject an SQL request into GET request parameters and directly query the underlying database.