Lucene search

K

M2 Firmware Security Vulnerabilities

cve
cve

CVE-2019-11319

An issue was discovered in Motorola CX2 1.01 and M2 1.01. There is a command injection in the function downloadFirmware in hnap, which leads to remote code execution via shell metacharacters in a JSON value.

9.8CVSS

9.9AI Score

0.007EPSS

2019-04-18 05:29 PM
25
cve
cve

CVE-2019-11320

In Motorola CX2 1.01 and M2 1.01, users can access the router's /priv_mgt.html web page to launch telnetd, as demonstrated by the 192.168.51.1 address.

9.8CVSS

9.3AI Score

0.007EPSS

2019-04-18 05:29 PM
18
cve
cve

CVE-2019-11321

An issue was discovered in Motorola CX2 1.01 and M2 1.01. The router opens TCP port 8010. Users can send hnap requests to this port without authentication to obtain information such as the MAC addresses of connected client devices.

5.3CVSS

5.2AI Score

0.001EPSS

2019-04-18 05:29 PM
16
cve
cve

CVE-2019-11322

An issue was discovered in Motorola CX2 1.01 and M2 1.01. There is a command injection in the function startRmtAssist in hnap, which leads to remote code execution via shell metacharacters in a JSON value.

9.8CVSS

9.9AI Score

0.007EPSS

2019-04-18 05:29 PM
17
cve
cve

CVE-2019-12297

An issue was discovered in scopd on Motorola routers CX2 1.01 and M2 1.01. There is a Use of an Externally Controlled Format String, reachable via TCP port 8010 or UDP port 8080.

9.8CVSS

9.4AI Score

0.007EPSS

2019-05-23 02:29 PM
22
cve
cve

CVE-2019-9117

An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote attacker to execute arbitrary code, and get a root shell. A command Injection vulnerability allows attackers to execute arbitrary OS commands via a cra...

9.8CVSS

9.7AI Score

0.007EPSS

2019-03-07 11:29 PM
18
cve
cve

CVE-2019-9118

An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote attacker to execute arbitrary code, and get a root shell. A command Injection vulnerability allows attackers to execute arbitrary OS commands via a cra...

9.8CVSS

9.7AI Score

0.007EPSS

2019-03-07 11:29 PM
22
cve
cve

CVE-2019-9119

An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote attacker to execute arbitrary code, and get a root shell. A command Injection vulnerability allows attackers to execute arbitrary OS commands via a cra...

9.8CVSS

9.7AI Score

0.007EPSS

2019-03-07 11:29 PM
24
cve
cve

CVE-2019-9120

An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote attacker to execute arbitrary code, and get a root shell. A command Injection vulnerability allows attackers to execute arbitrary OS commands via a cra...

9.8CVSS

9.7AI Score

0.007EPSS

2019-03-07 11:29 PM
19
cve
cve

CVE-2019-9121

An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote attacker to execute arbitrary code, and get a root shell. A command Injection vulnerability allows attackers to execute arbitrary OS commands via a cra...

9.8CVSS

9.7AI Score

0.003EPSS

2019-03-07 11:29 PM
18