|
247221
|
9.8 |
CRITICAL
Network
|
pdqinc
|
laserwash_g5_firmware laserwash_g5_s_firmware laserwash_m5_firmware laserwash_360_firmware laserwash_360_plus_firmware laserwash_autoxpress_firmware laserwash_autoxpress_plus_firmwa…
|
A Missing Encryption of Sensitive Data issue was discovered in PDQ Manufacturing LaserWash G5 and G5 S Series all versions, LaserWash M5, all versions, LaserWash 360 and 360 Plus, all versions, Laser…
|
CWE-311
Missing Encryption of Sensitive Data
|
CVE-2017-9632
|
2024-11-21 12:36 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247222
|
9.4 |
CRITICAL
Network
|
pdqinc
|
laserwash_g5_firmware laserwash_g5_s_firmware laserwash_m5_firmware laserwash_360_firmware laserwash_360_plus_firmware laserwash_autoxpress_firmware laserwash_autoxpress_plus_firmwa…
|
An Improper Authentication issue was discovered in PDQ Manufacturing LaserWash G5 and G5 S Series all versions, LaserWash M5, all versions, LaserWash 360 and 360 Plus, all versions, LaserWash AutoXpr…
|
CWE-287
Improper Authentication
|
CVE-2017-9630
|
2024-11-21 12:36 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247223
|
9.8 |
CRITICAL
Network
|
sma
|
sunny_boy_3600_firmware sunny_boy_5000_firmware sunny_tripower_core1_firmware sunny_tripower_15000tl_firmware sunny_tripower_20000tl_firmware sunny_tripower_25000tl_firmware sunny_t…
|
An issue was discovered in SMA Solar Technology products. By sniffing for specific packets on the localhost, plaintext passwords can be obtained as they are typed into Sunny Explorer by the user. The…
|
CWE-311
Missing Encryption of Sensitive Data
|
CVE-2017-9854
|
2024-11-21 12:36 |
2017-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247224
|
9.8 |
CRITICAL
Network
|
sma
|
sunny_boy_3600_firmware sunny_boy_5000_firmware sunny_tripower_core1_firmware sunny_tripower_15000tl_firmware sunny_tripower_20000tl_firmware sunny_tripower_25000tl_firmware sunny_t…
|
An issue was discovered in SMA Solar Technology products. All inverters have a very weak password policy for the user and installer password. No complexity requirements or length requirements are set…
|
CWE-521
Weak Password Requirements
|
CVE-2017-9853
|
2024-11-21 12:36 |
2017-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247225
|
9.8 |
CRITICAL
Network
|
sma
|
sunny_boy_3600_firmware sunny_boy_5000_firmware sunny_tripower_core1_firmware sunny_tripower_15000tl_firmware sunny_tripower_20000tl_firmware sunny_tripower_25000tl_firmware sunny_t…
|
An Incorrect Password Management issue was discovered in SMA Solar Technology products. Default passwords exist that are rarely changed. User passwords will almost always be default. Installer passwo…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2017-9852
|
2024-11-21 12:36 |
2017-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247226
|
7.5 |
HIGH
Network
|
spectrum
|
tc8717t_firmware
|
The Time Warner firmware on Technicolor TC8717T devices sets the default Wi-Fi passphrase to a combination of the SSID and BSSID, which makes it easier for remote attackers to obtain network access b…
|
NVD-CWE-noinfo
|
CVE-2017-9522
|
2024-11-21 12:36 |
2017-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247227
|
5.5 |
MEDIUM
Local
|
motorola comcast
|
mx011anm_firmware xfinity_xr11-20_firmware
|
The Comcast firmware on Motorola MX011ANM (firmware version MX011AN_2.9p6s1_PROD_sey) and Xfinity XR11-20 Voice Remote devices allows local users to upload arbitrary firmware images to an XR11 by lev…
|
CWE-354
Improper Validation of Integrity Check Value
|
CVE-2017-9498
|
2024-11-21 12:36 |
2017-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247228
|
9.8 |
CRITICAL
Network
|
cisco commscope
|
dpc3939_firmware dpc3939b_firmware dpc3941t_firmware arris_tg1682g_firmware
|
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST); Cisco DPC3939B (firmw…
|
NVD-CWE-noinfo
|
CVE-2017-9521
|
2024-11-21 12:36 |
2017-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247229
|
6.8 |
MEDIUM
Physics
|
cisco
|
mx011anm_firmware
|
The Comcast firmware on Motorola MX011ANM (firmware version MX011AN_2.9p6s1_PROD_sey) devices allows physically proximate attackers to execute arbitrary commands as root by pulling up the diagnostics…
|
CWE-20
Improper Input Validation
|
CVE-2017-9497
|
2024-11-21 12:36 |
2017-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247230
|
6.8 |
MEDIUM
Physics
|
cisco
|
mx011anm_firmware
|
The Comcast firmware on Motorola MX011ANM (firmware version MX011AN_2.9p6s1_PROD_sey) devices allows physically proximate attackers to access an SNMP server by connecting a cable to the Ethernet port…
|
NVD-CWE-noinfo
|
CVE-2017-9496
|
2024-11-21 12:36 |
2017-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|