VARIoT IoT vulnerabilities database
| VAR-202302-0314 | CVE-2023-24153 | OTOLINK T8 Command injection vulnerability in |
CVSS V2: 10.0 CVSS V3: 9.8 Severity: CRITICAL |
A command injection vulnerability in the version parameter in the function recvSlaveCloudCheckStatus of TOTOLINK T8 V4.1.5cu allows attackers to execute arbitrary commands via a crafted MQTT packet. OTOLINK T8 Contains a command injection vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. The TOTOLINK T8 is a wireless dual-band router primarily used for network connectivity and data transmission
| VAR-202302-0177 | CVE-2023-24154 | TOTOLINK T8 Command injection vulnerability in |
CVSS V2: 10.0 CVSS V3: 9.8 Severity: CRITICAL |
TOTOLINK T8 V4.1.5cu was discovered to contain a command injection vulnerability via the slaveIpList parameter in the function setUpgradeFW. (DoS) It may be in a state. The TOTOLINK T8 is a wireless dual-band router primarily used for network connectivity and data transmission. This vulnerability stems from the failure of the slaveIpList parameter in the setUpgradeFW method to properly filter special characters and commands when constructing commands. An attacker could exploit this vulnerability to execute arbitrary commands
| VAR-202302-0188 | CVE-2023-24156 | TOTOLINK T8 Command injection vulnerability in |
CVSS V2: 10.0 CVSS V3: 9.8 Severity: CRITICAL |
A command injection vulnerability in the ip parameter in the function recvSlaveUpgstatus of TOTOLINK T8 V4.1.5cu allows attackers to execute arbitrary commands via a crafted MQTT packet. TOTOLINK T8 Contains a command injection vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. The TOTOLINK T8 is a wireless dual-band router primarily used for network connectivity and data transmission
| VAR-202302-0251 | CVE-2023-24157 | TOTOLINK T8 Command injection vulnerability in |
CVSS V2: 10.0 CVSS V3: 9.8 Severity: CRITICAL |
A command injection vulnerability in the serverIp parameter in the function updateWifiInfo of TOTOLINK T8 V4.1.5cu allows attackers to execute arbitrary commands via a crafted MQTT packet. TOTOLINK T8 Contains a command injection vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. The TOTOLINK T8 is a wireless dual-band router primarily used for network connectivity and data transmission
| VAR-202302-0263 | CVE-2021-37317 | ASUS RT-AC68U Path traversal vulnerability in router firmware |
CVSS V2: - CVSS V3: 9.1 Severity: CRITICAL |
Directory Traversal vulnerability in Cloud Disk in ASUS RT-AC68U router firmware version before 3.0.0.4.386.41634 allows remote attackers to write arbitrary files via improper sanitation on the target for COPY and MOVE operations. ASUS RT-AC68U A path traversal vulnerability exists in router firmware.Information is tampered with and service operation is interrupted (DoS) It may be in a state
| VAR-202302-0176 | CVE-2023-24151 | TOTOLINK T8 Command injection vulnerability in |
CVSS V2: 10.0 CVSS V3: 9.8 Severity: CRITICAL |
A command injection vulnerability in the ip parameter in the function recvSlaveCloudCheckStatus of TOTOLINK T8 V4.1.5cu allows attackers to execute arbitrary commands via a crafted MQTT packet. TOTOLINK T8 Contains a command injection vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. The TOTOLINK T8 is a wireless dual-band router primarily used for network connectivity and data transmission
| VAR-202302-0134 | CVE-2023-24150 | TOTOLINK T8 Command injection vulnerability in |
CVSS V2: 10.0 CVSS V3: 9.8 Severity: CRITICAL |
A command injection vulnerability in the serverIp parameter in the function meshSlaveDlfw of TOTOLINK T8 V4.1.5cu allows attackers to execute arbitrary commands via a crafted MQTT packet. TOTOLINK T8 Contains a command injection vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. The TOTOLINK T8 is a wireless dual-band router primarily used for network connectivity and data transmission
| VAR-202302-0295 | CVE-2021-37315 | ASUS RT-AC68U Misresolved name or reference usage vulnerability in router firmware |
CVSS V2: - CVSS V3: 9.1 Severity: CRITICAL |
Incorrect Access Control issue discoverd in Cloud Disk in ASUS RT-AC68U router firmware version before 3.0.0.4.386.41634 allows remote attackers to write arbitrary files via improper sanitation on the source for COPY and MOVE operations. ASUS RT-AC68U A vulnerability exists in router firmware related to the use of incorrectly resolved names or references.Information is tampered with and service operation is interrupted (DoS) It may be in a state
| VAR-202302-0191 | CVE-2023-0659 | BDCOM 1704-WGL Information Disclosure Vulnerability |
CVSS V2: 5.0 CVSS V3: 5.3 Severity: MEDIUM |
A vulnerability was found in BDCOM 1704-WGL 2.0.6314. It has been classified as critical. This affects an unknown part of the file /param.file.tgz of the component Backup File Handler. The manipulation leads to information disclosure. It is possible to initiate the attack remotely. The identifier VDB-220101 was assigned to this vulnerability. BDCOM 1704-WGL Exists in unspecified vulnerabilities.Information may be obtained. BDCOM 1704-WGL is a router of China BDCOM Company. Attackers can use this vulnerability to obtain sensitive information
| VAR-202302-0417 | CVE-2021-37316 | RT-AC68U in router firmware SQL Injection vulnerability |
CVSS V2: - CVSS V3: 7.5 Severity: HIGH |
SQL injection vulnerability in Cloud Disk in ASUS RT-AC68U router firmware version before 3.0.0.4.386.41634 allows remote attackers to view sensitive information via /etc/shadow. RT-AC68U The router firmware has SQL There is an injection vulnerability.Information may be obtained
| VAR-202302-0308 | CVE-2023-24576 | EMC NetWorker Code injection vulnerability in |
CVSS V2: - CVSS V3: 9.8 Severity: CRITICAL |
EMC NetWorker may potentially be vulnerable to an unauthenticated remote code execution vulnerability in the NetWorker Client execution service (nsrexecd) irrespective of any auth used. (DoS) It may be in a state. An unauthenticated remote attacker could send arbitrary commands via RPC service to be executed on the host system with the privileges of the nsrexecd service, which runs with administrative privileges
| VAR-202302-0436 | CVE-2023-24152 | TOTOLINK T8 Command injection vulnerability in |
CVSS V2: 10.0 CVSS V3: 9.8 Severity: CRITICAL |
A command injection vulnerability in the serverIp parameter in the function meshSlaveUpdate of TOTOLINK T8 V4.1.5cu allows attackers to execute arbitrary commands via a crafted MQTT packet. TOTOLINK T8 Contains a command injection vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. The TOTOLINK T8 is a wireless dual-band router primarily used for network connectivity and data transmission
| VAR-202302-0189 | CVE-2023-23925 | Switcher Client Inefficient Regular Expression Complexity Vulnerability in |
CVSS V2: - CVSS V3: 7.5 Severity: HIGH |
Switcher Client is a JavaScript SDK to work with Switcher API which is cloud-based Feature Flag. Unsanitized input flows into Strategy match operation (EXIST), where it is used to build a regular expression. This may result in a Regular expression Denial of Service attack (reDOS). This issue has been patched in version 3.1.4. As a workaround, avoid using Strategy settings that use REGEX in conjunction with EXIST and NOT_EXIST operations. Switcher Client contains an inefficient regular expression complexity vulnerability.Service operation interruption (DoS) It may be in a state
| VAR-202302-0075 | CVE-2022-41312 | Moxa SDS-3008 series Industrial Ethernet Switch Cross-site scripting vulnerability in |
CVSS V2: 5.5 CVSS V3: 4.3 Severity: MEDIUM |
A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial Ethernet Switch 2.1. A specially-crafted HTTP request can lead to arbitrary Javascript execution. An attacker can send an HTTP request to trigger this vulnerability.Form field id="Switch Description", name "switch_description". Moxa SDS-3008 is a series of industrial switches produced by Chinese MOXA company
| VAR-202302-0079 | CVE-2022-48130 | Tenda W20E Out-of-bounds write vulnerability in |
CVSS V2: - CVSS V3: 9.8 Severity: CRITICAL |
Tenda W20E v15.11.0.6 was discovered to contain multiple stack overflows in the function formSetStaticRoute via the parameters staticRouteNet, staticRouteMask, staticRouteGateway, staticRouteWAN. Tenda W20E Exists in an out-of-bounds write vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
| VAR-202302-0098 | CVE-2023-0640 | TRENDnet TEW-652BRP Command injection vulnerability in |
CVSS V2: 8.3 CVSS V3: 7.2 Severity: HIGH |
A vulnerability was found in TRENDnet TEW-652BRP 3.04b01. It has been classified as critical. Affected is an unknown function of the file ping.ccp of the component Web Interface. The manipulation leads to command injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-220020. TRENDnet TEW-652BRP Contains a command injection vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. TRENDnet TEW-811DRU is a wireless router produced by TRENDnet. Remote attackers can use this vulnerability to submit special requests and execute arbitrary commands
| VAR-202302-0131 | CVE-2022-46552 |
D-Link DIR-846 in the firmware OS Command injection vulnerability
Related entries in the VARIoT exploits database: VAR-E-202304-0282 |
CVSS V2: 10.0 CVSS V3: 8.8 Severity: HIGH |
D-Link DIR-846 Firmware FW100A53DBR was discovered to contain a remote command execution (RCE) vulnerability via the lan(0)_dhcps_staticlist parameter. This vulnerability is exploited via a crafted POST request. D-Link DIR-846 The firmware has OS A command injection vulnerability exists.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. D-Link DIR-846 is a wireless router made by China D-Link Company
| VAR-202302-0136 | CVE-2023-23110 | plural Netgear Vulnerability related to insufficient integrity verification of downloaded code in products |
CVSS V2: - CVSS V3: 7.4 Severity: HIGH |
An exploitable firmware modification vulnerability was discovered in certain Netgear products. The data integrity of the uploaded firmware image is ensured with a fixed checksum number. Therefore, an attacker can conduct a MITM attack to modify the user-uploaded firmware image and bypass the checksum verification. This affects WNR612v2 Wireless Routers 1.0.0.3 and earlier, DGN1000v3 Modem Router 1.0.0.22 and earlier, D6100 WiFi DSL Modem Routers 1.0.0.63 and earlier, WNR1000v2 Wireless Routers 1.1.2.60 and earlier, XAVN2001v2 Wireless-N Extenders 0.4.0.7 and earlier, WNR2200 Wireless Routers 1.0.1.102 and earlier, WNR2500 Wireless Routers 1.0.0.34 and earlier, R8900 Smart WiFi Routers 1.0.3.6 and earlier, and R9000 Smart WiFi Routers 1.0.3.6 and earlier. plural Netgear The product contains a flaw in the integrity verification of downloaded code.Information is tampered with and service operation is interrupted (DoS) It may be in a state
| VAR-202302-0076 | CVE-2022-41311 | Moxa SDS-3008 series Industrial Ethernet Switch Cross-site scripting vulnerability in |
CVSS V2: 5.5 CVSS V3: 4.3 Severity: MEDIUM |
A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial Ethernet Switch 2.1. A specially-crafted HTTP request can lead to arbitrary Javascript execution. An attacker can send an HTTP request to trigger this vulnerability.Form field id="webLocationMessage_text" name="webLocationMessage_text". Moxa SDS-3008 is a series of industrial switches produced by Chinese MOXA company
| VAR-202302-0321 | CVE-2023-0638 | TRENDnet TEW-811DRU Command Injection Vulnerability |
CVSS V2: 8.3 CVSS V3: 7.2 Severity: HIGH |
A vulnerability has been found in TRENDnet TEW-811DRU 1.0.10.0 and classified as critical. This vulnerability affects unknown code of the component Web Interface. The manipulation leads to command injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-220018 is the identifier assigned to this vulnerability. TRENDnet TEW-811DRU Contains a command injection vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. TRENDnet TEW-811DRU is a wireless router produced by TRENDnet. Attackers can use this vulnerability to submit special requests and execute arbitrary commands