Securifi
Securifi Almond Firmware: vulnerabilidades y CVE
Securifi Almond Firmware tiene 15 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE15
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2017-8337 | Alta (8.8) | 2.6% | — | 18 jun 2019 | An issue was discovered on Securifi Almond, Almond+, and Almond 2015 devices with firmware AL-R096. The device provides a user with the capability of executing various actions on the web management interface. It seems… |
| CVE-2017-8334 | Alta (8) | 0.93% | — | 18 jun 2019 | An issue was discovered on Securifi Almond, Almond+, and Almond 2015 devices with firmware AL-R096. The device provides a user with the capability of blocking IP addresses using the web management interface. It seems… |
| CVE-2017-8332 | Alta (8.8) | 2.9% | — | 18 jun 2019 | An issue was discovered on Securifi Almond, Almond+, and Almond 2015 devices with firmware AL-R096. The device provides a user with the capability of blocking key words passing in the web traffic to prevent kids from… |
| CVE-2017-8330 | Media (6.5) | 1.5% | — | 18 jun 2019 | An issue was discovered on Securifi Almond, Almond+, and Almond 2015 devices with firmware AL-R096. The device provides a UPnP functionality for devices to interface with the router and interact with the device. It… |
| CVE-2017-8328 | Alta (8.8) | 1.4% | — | 18 jun 2019 | An issue was discovered on Securifi Almond, Almond+, and Almond 2015 devices with firmware AL-R096. The device provides a user with the capability of changing the administrative password for the web management… |
| CVE-2017-8333 | Alta (8.8) | 7.1% | — | 18 jun 2019 | An issue was discovered on Securifi Almond, Almond+, and Almond 2015 devices with firmware AL-R096. The device provides a user with the capability of adding new routes to the device. It seems that the POST parameters… |
| CVE-2017-8331 | Alta (8.8) | 7.0% | — | 18 jun 2019 | An issue was discovered on Securifi Almond, Almond+, and Almond 2015 devices with firmware AL-R096. The device provides a user with the capability of adding new port forwarding rules to the device. It seems that the… |
| CVE-2017-8329 | Media (6.4) | 2.0% | — | 18 jun 2019 | An issue was discovered on Securifi Almond, Almond+, and Almond 2015 devices with firmware AL-R096. The device provides a user with the capability of setting a name for the wireless network. These values are stored by… |
| CVE-2017-8336 | Alta (8.8) | 2.7% | — | 18 jun 2019 | An issue was discovered on Securifi Almond, Almond+, and Almond 2015 devices with firmware AL-R096. The device provides a user with the capability of adding new routes to the device. It seems that the POST parameters… |
| CVE-2017-8335 | Alta (8) | 2.1% | — | 18 jun 2019 | An issue was discovered on Securifi Almond, Almond+, and Almond 2015 devices with firmware AL-R096. The device provides a user with the capability of setting name for wireless network. These values are stored by the… |
| CVE-2015-7296 | Media (4.3) | 1.2% | — | 21 sept 2015 | Securifi Almond devices with firmware before AL1-R201EXP10-L304-W34 and Almond-2015 devices with firmware before AL2-R088M use a linear algorithm for selecting the ID value in the header of a DNS query performed on… |
| CVE-2015-2917 | Media (4.3) | 0.90% | — | 21 sept 2015 | Securifi Almond devices with firmware before AL1-R201EXP10-L304-W34 and Almond-2015 devices with firmware before AL2-R088M unintentionally omit the X-Frame-Options HTTP header, which makes it easier for remote attackers… |
| CVE-2015-2916 | Media (6.8) | 0.66% | — | 21 sept 2015 | Cross-site request forgery (CSRF) vulnerability on Securifi Almond devices with firmware before AL1-R201EXP10-L304-W34 and Almond-2015 devices with firmware before AL2-R088M allows remote attackers to hijack the… |
| CVE-2015-2915 | Alta (7.3) | 0.86% | — | 21 sept 2015 | Securifi Almond devices with firmware before AL1-R201EXP10-L304-W34 and Almond-2015 devices with firmware before AL2-R088M have a default password of admin for the admin account, which allows remote attackers to obtain… |
| CVE-2015-2914 | Media (5) | 1.5% | — | 21 sept 2015 | Securifi Almond devices with firmware before AL1-R201EXP10-L304-W34 and Almond-2015 devices with firmware before AL2-R088M use a fixed source-port number in outbound DNS queries performed on behalf of any device, which… |