Check CVE Id
Check CWE Id
NetComm Wireless G LTE Light Industrial M2M Router (NWL-25) with firmware 220.127.116.11 and prior. The device allows access to configuration files and profiles without authenticating the user.
CVSS Base Score
NetComm Wireless G LTE Light Industrial M2M Router (NWL-25) with firmware 18.104.22.168 and prior. The directory of the device is listed openly without authentication.
NetComm Wireless G LTE Light Industrial M2M Router (NWL-25) with firmware 22.214.171.124 and prior. The device is vulnerable to several cross-site scripting attacks, allowing a remote attacker to run arbitrary code on the device.
NetComm Wireless G LTE Light Industrial M2M Router (NWL-25) with firmware 126.96.36.199 and prior. A cross-site request forgery condition can occur, allowing an attacker to change passwords of the device remotely.
ping.cgi in NetCommWireless HSPA 3G10WVE wireless routers with firmware before 3G10WVE-L101-S306ETS-C01_R05 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the DIA_IPADDRESS parameter.
ping.cgi in NetCommWireless HSPA 3G10WVE wireless routers with firmware before 3G10WVE-L101-S306ETS-C01_R05 allows remote attackers to bypass intended access restrictions via a direct request. NOTE: this issue can be combined with CVE-2015-6024 to e...
Cross-site scripting (XSS) vulnerability in wlsecurity.html on NetCommWireless NB604N routers with firmware before GAN5.CZ56T-B-NC.AU-R4B030.EN allows remote attackers to inject arbitrary web script or HTML via the wlWpaPsk parameter.
Back to Top