VYPR

MEX605

by Netis

CVEs (3)

  • CVE-2024-33792CriMay 3, 2024
    risk 0.64cvss 9.8epss 0.01

    netis-systems MEX605 v2.00.06 allows attackers to execute arbitrary OS commands via a crafted payload to the tracert page.

  • CVE-2024-33793MedMay 3, 2024
    risk 0.34cvss 5.3epss 0.00

    netis-systems MEX605 v2.00.06 allows attackers to execute arbitrary OS commands via a crafted payload to the ping test page.

  • CVE-2024-33791MedMay 3, 2024
    risk 0.30cvss 4.6epss 0.00

    A cross-site scripting (XSS) vulnerability in netis-systems MEX605 v2.00.06 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the getTimeZone function.