Skyworthdigital
Skyworthdigital Cm5100 Firmware: vulnerabilidades y CVE
Skyworthdigital Cm5100 Firmware tiene 26 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE26
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-51743 | Alta (7.5) | 0.58% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Set Upstream Channel ID (UCID) parameter at its web interface. A remote attacker could… |
| CVE-2023-51742 | Alta (7.5) | 0.58% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Add Downstream Frequency parameter at its web interface. A remote attacker could… |
| CVE-2023-51741 | Alta (7.5) | 0.37% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to transmission of authentication credentials in plaintext over the network. A remote attacker could exploit this vulnerability by eavesdropping… |
| CVE-2023-51740 | Alta (7.5) | 0.37% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to transmission of authentication credentials in plaintext over the network. A remote attacker could exploit this vulnerability by eavesdropping… |
| CVE-2023-51739 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Device Name parameter at its web interface. A remote attacker could exploit this… |
| CVE-2023-51738 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Network Name (SSID) parameter at its web interface. A remote attacker could exploit… |
| CVE-2023-51737 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Preshared Phrase parameter at its web interface. A remote attacker could exploit this… |
| CVE-2023-51736 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the L2TP/PPTP Username parameter at its web interface. A remote attacker could exploit this… |
| CVE-2023-51735 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Pre-shared key parameter at its web interface. A remote attacker could exploit this… |
| CVE-2023-51734 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Identity parameter under Remote endpoint settings at its web interface. A remote… |
| CVE-2023-51733 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Identity parameter under Local endpoint settings at its web interface. A remote… |
| CVE-2023-51732 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the IPsec Tunnel Name parameter at its web interface. A remote attacker could exploit this… |
| CVE-2023-51731 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Hostname parameter at its web interface. A remote attacker could exploit this… |
| CVE-2023-51730 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the DDNS Password parameter at its web interface. A remote attacker could exploit this… |
| CVE-2023-51729 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the DDNS Username parameter at its web interface. A remote attacker could exploit this… |
| CVE-2023-51728 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the SMTP Password parameter at its web interface. A remote attacker could exploit this… |
| CVE-2023-51727 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the SMTP Username parameter at its web interface. A remote attacker could exploit this… |
| CVE-2023-51726 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the SMTP Server Name parameter at its web interface. A remote attacker could exploit this… |
| CVE-2023-51725 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Contact Email Address parameter at its web interface. A remote attacker could exploit… |
| CVE-2023-51724 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the URL parameter at its web interface. A remote attacker could exploit this vulnerability… |
| CVE-2023-51723 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Description parameter at its web interface. A remote attacker could exploit this… |
| CVE-2023-51722 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Time Server 3 parameter at its web interface. A remote attacker could exploit this… |
| CVE-2023-51721 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Time Server 2 parameter at its web interface. A remote attacker could exploit this… |
| CVE-2023-51720 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Time Server 1 parameter at its web interface. A remote attacker could exploit this… |
| CVE-2023-51719 | Media (5.4) | 0.36% | — | 17 ene 2024 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Traceroute parameter at its web interface. A remote attacker could exploit this… |
| CVE-2018-20398 | Crítica (9.8) | 2.1% | — | 23 dic 2018 | Skyworth CM5100 V1.1.0, CM5100-440 V1.2.1, CM5100-511 4.1.0.14, CM5100-GHD00 V1.2.2, and CM5100.g2 4.1.0.17 devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and… |