VARIoT IoT vulnerabilities database

Affected products: vendor, model and version
CWE format is 'CWE-number'. Threat type can be: remote or local
Look up free text in title and description

VAR-202104-1262 CVE-2021-30230 An Lianbao WF-1 router has a command execution vulnerability CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
The api/ZRFirmware/set_time_zone interface in China Mobile An Lianbao WF-1 router 1.0.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the zonename parameter. Anlianbao WT-1 is a 4G router that integrates wired and wireless router access, and secure Internet access. An Lianbao WF-1 router has a command execution vulnerability, which can be exploited by attackers to gain server management rights
VAR-202104-1266 CVE-2021-30234 An Lianbao WF-1 router has a command execution vulnerability CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
The api/ZRIGMP/set_MLD_PROXY interface in China Mobile An Lianbao WF-1 router 1.0.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the MLD_PROXY_WAN_CONNECT parameter. Anlianbao WT-1 is a 4G router that integrates wired and wireless router access, and secure Internet access. An Lianbao WF-1 router has a command execution vulnerability, which can be exploited by attackers to gain server management rights
VAR-202104-1265 CVE-2021-30233 An Lianbao WF-1 router has a command execution vulnerability CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
The api/ZRIptv/setIptvInfo interface in China Mobile An Lianbao WF-1 router 1.0.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the iptv_vlan parameter. Anlianbao WT-1 is a 4G router that integrates wired and wireless router access, and secure Internet access. An Lianbao WF-1 router has a command execution vulnerability, which can be exploited by attackers to gain server management rights
VAR-202104-1264 CVE-2021-30232 An Lianbao WF-1 router has a command execution vulnerability CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
The api/ZRIGMP/set_IGMP_PROXY interface in China Mobile An Lianbao WF-1 router 1.0.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the IGMP_PROXY_WAN_CONNECT parameter. Anlianbao WT-1 is a 4G router that integrates wired and wireless router access, and secure Internet access. An Lianbao WF-1 router has a command execution vulnerability, which can be exploited by attackers to gain server management rights
VAR-202104-1263 CVE-2021-30231 An Lianbao WF-1 router has a command execution vulnerability CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
The api/zrDm/set_ZRElink interface in China Mobile An Lianbao WF-1 router 1.0.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the bssaddr, abiaddr, devtoken, devid, elinksync, or elink_proc_enable parameter. Anlianbao WT-1 is a 4G router that integrates wired and wireless router access, and secure Internet access. An Lianbao WF-1 router has a command execution vulnerability, which can be exploited by attackers to gain server management rights
VAR-202104-1261 CVE-2021-30229 An Lianbao WF-1 router has a command execution vulnerability CVSS V2: 6.5
CVSS V3: 8.8
Severity: HIGH
The api/zrDm/set_zrDm interface in China Mobile An Lianbao WF-1 router 1.0.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the dm_enable, AppKey, or Pwd parameter. Anlianbao WT-1 is a 4G router that integrates wired and wireless router access, and secure Internet access. An Lianbao WF-1 router has a command execution vulnerability, which can be exploited by attackers to gain server management rights
VAR-202104-1260 CVE-2021-30228 An Lianbao WF-1 router has a command execution vulnerability CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
The api/ZRAndlink/set_ZRAndlink interface in China Mobile An Lianbao WF-1 router 1.0.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the iandlink_proc_enable parameter. Anlianbao WT-1 is a 4G router that integrates wired and wireless router access, and secure Internet access. An Lianbao WF-1 router has a command execution vulnerability, which can be exploited by attackers to gain server management rights
VAR-202102-1658 CVE-2021-33962 China Mobile An Lianbao WF-1  In the router  OS  Command injection vulnerability CVSS V2: 10.0
CVSS V3: 9.8
Severity: CRITICAL
China Mobile An Lianbao WF-1 router v1.0.1 is affected by an OS command injection vulnerability in the web interface /api/ZRUsb/pop_usb_device component. (DoS) It may be in a state. Anlianbao WT-1 is a 4G router that integrates wired and wireless router access, and secure Internet access. An Lianbao WF-1 router has a command execution vulnerability, which can be exploited by attackers to gain server management rights
VAR-202102-1657 CVE-2021-33965 China Mobile An Lianbao WF-1  Command injection vulnerability in router CVSS V2: 6.5
CVSS V3: 8.8
Severity: HIGH
China Mobile An Lianbao WF-1 V1.0.1 router provides a web interface /api/ZRMesh/set_ZRMesh which receives parameters by POST request, and the parameter mesh_enable and mesh_device have a command injection vulnerability. An attacker can use the vulnerability to execute remote commands. (DoS) It may be in a state. Anlianbao WT-1 is a 4G router that integrates wired and wireless router access, and secure Internet access. An Lianbao WF-1 router has a command execution vulnerability, which can be exploited by attackers to gain server management rights
VAR-202102-1656 CVE-2021-33963 China Mobile An Lianbao WF-1  Command injection vulnerability in CVSS V2: 10.0
CVSS V3: 9.8
Severity: CRITICAL
China Mobile An Lianbao WF-1 v1.0.1 router web interface through /api/ZRMacClone/mac_addr_clone receives parameters by POST request, and the parameter macType has a command injection vulnerability. An attacker can use the vulnerability to execute remote commands. (DoS) It may be in a state. Anlianbao WT-1 is a 4G router that integrates wired and wireless router access, and secure Internet access. An Lianbao WF-1 router has a command execution vulnerability, which can be exploited by attackers to gain server management rights
VAR-202102-1655 CVE-2021-33964 China Mobile An Lianbao WF-1  Command injection vulnerability in router CVSS V2: 6.5
CVSS V3: 8.8
Severity: HIGH
China Mobile An Lianbao WF-1 V1.0.1 router provides a web interface /api/ZRRuleFilter/set_firewall_level which receives parameters by POST request, and the parameter firewall_level has a command injection vulnerability. An attacker can use the vulnerability to execute remote commands. (DoS) It may be in a state. Anlianbao WT-1 is a 4G router that integrates wired and wireless router access, and secure Internet access. An Lianbao WF-1 router has a command execution vulnerability, which can be exploited by attackers to gain server management rights
VAR-202102-1530 No CVE DD-WRT has a denial of service vulnerability CVSS V2: 6.1
CVSS V3: -
Severity: MEDIUM
DD-WRT is a Linux-based wireless routing software, released based on GPLV2. DD-WRT has a denial of service vulnerability, which can be exploited by an attacker to cause a denial of service.
VAR-202102-1531 No CVE Netgear AC1750 R6400v2 has a denial of service vulnerability CVSS V2: 6.1
CVSS V3: -
Severity: MEDIUM
Netgear AC1750 R6400v2 is a Wi-Fi router. Netgear AC1750 R6400v2 has a denial of service vulnerability. Attackers can use the loopholes to send carefully constructed data packets (pointing to a specific destination address) to cause the target router and its upper carrier's router to cause a denial of service.
VAR-202102-1532 No CVE Tenda AC23 has a denial of service vulnerability CVSS V2: 6.1
CVSS V3: -
Severity: MEDIUM
Tenda AC23 is a hundred yuan router. Tenda AC23 has a denial of service vulnerability. Attackers can use the loopholes to send carefully constructed data packets (pointing to a specific destination address) to cause the target router and its upper carrier's router to cause a denial of service.
VAR-202102-1594 No CVE OpenWrt has a denial of service vulnerability CVSS V2: 6.1
CVSS V3: -
Severity: MEDIUM
OpenWRT is a highly modular, highly automated embedded Linux system with powerful network components and scalability, and is often used in industrial control equipment, telephones, small robots, smart homes, routers, and VOIP devices. OpenWrt has a denial of service vulnerability that an attacker can exploit to cause a denial of service.
VAR-202102-0662 CVE-2020-36249 ownCloud Server  for  File Firewall  Vulnerability in CVSS V2: 5.0
CVSS V3: 7.5
Severity: HIGH
The File Firewall before 2.8.0 for ownCloud Server does not properly enforce file-type restrictions for public shares. The following products and versions are affected: Owncloud File Firewall prior to 2.8.0
VAR-202102-0527 CVE-2021-22701 Schneider PowerLogic Product Cross-Site Request Forgery Vulnerability CVSS V2: 3.5
CVSS V3: 4.5
Severity: MEDIUM
A CWE-352: Cross-Site Request Forgery vulnerability exists in PowerLogic ION7400, ION7650, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affected versions), that could cause a user to perform an unintended action on the target device when using the HTTP web interface.
VAR-202102-0529 CVE-2021-22703 Schneider PowerLogic Product Information Disclosure Vulnerability CVSS V2: 5.0
CVSS V3: 7.5
Severity: HIGH
A CWE-319: Cleartext transmission of sensitive information vulnerability exists in PowerLogic ION7400, ION7650, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affected versions), that could cause disclosure of user credentials when a malicious actor intercepts HTTP network traffic between a user and the device.
VAR-202102-0528 CVE-2021-22702 Schneider PowerLogic Product Information Disclosure Vulnerability CVSS V2: 5.0
CVSS V3: 7.5
Severity: HIGH
A CWE-319: Cleartext transmission of sensitive information vulnerability exists in PowerLogic ION7400, ION7650, ION7700/73xx, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affected versions), that could cause disclosure of user credentials when a malicious actor intercepts Telnet network traffic between a user and the device.
VAR-202102-0792 CVE-2021-21512 Dell EMC PowerProtect Cyber Recovery  Information Disclosure Vulnerability CVSS V2: 3.6
CVSS V3: 6.0
Severity: MEDIUM
Dell EMC PowerProtect Cyber Recovery, version 19.7.0.1, contains an Information Disclosure vulnerability. A locally authenticated high privileged Cyber Recovery user may potentially exploit this vulnerability leading to the takeover of the notification email account. This vulnerability stems from configuration errors in network systems or products during operation. Thereby taking over the notification email account