Vulnerabilities

Summary — last 7 days

New vulnerabilities2,808▼ 273 vs. last week
Critical / high1,313▼ 193 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)214▼ 107 vs. last week
–

2 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedCritical (9.4)2.3%—Ctekproducts Skyrouter Z4200 FirmwareCtekproducts Skyrouter Z4400 Firmware10/5/20176/17/2026
An Improper Authentication issue was discovered in Ctek SkyRouter Series 4200 and 4400, all versions prior to V6.00.11. By accessing a specific uniform resource locator (URL) on the web server, a malicious user is able to access the application without authenticating.
ModifiedHigh (10)66%💥 ExploitCtekproducts Skyrouter12/25/20116/16/2026
apps/a3/cfg_ethping.cgi in the Ctek SkyRouter 4200 and 4300 allows remote attackers to execute arbitrary commands via shell metacharacters in the PINGADDRESS parameter for a "u" action.
Orbitaley — Vulnerabilities