Lucene search

K

2wire Security Vulnerabilities

cve
cve

CVE-2006-4523

The web-based management interface in 2Wire, Inc. HomePortal and OfficePortal Series modems and routers allows remote attackers to cause a denial of service (crash) via a CRLF sequence in a GET...

6.5AI Score

0.034EPSS

2006-09-01 11:04 PM
32
cve
cve

CVE-2009-3962

The management interface on the 2wire Gateway 1700HG, 1701HG, 1800HW, 2071, 2700HG, and 2701HG-T with software before 5.29.52 allows remote attackers to cause a denial of service (reboot) via a %0d%0a sequence in the page parameter to the xslt program on TCP port 50001, a related issue to...

6.7AI Score

0.034EPSS

2009-11-17 06:30 PM
24
cve
cve

CVE-2008-6605

Cross-site request forgery (CSRF) vulnerability in the xslt script in the web-based management interface on the 2wire 1701HG, 1800HW, 2071HG, and 2700HG with firmware 3.17.5, 3.7.1, 4.25.19, or 5.29.51 allows remote attackers to hijack the intranet connectivity of arbitrary users for requests that....

7.4AI Score

0.013EPSS

2009-04-06 02:30 PM
31
cve
cve

CVE-2004-2749

Directory traversal vulnerability in wra/public/wralogin in 2Wire Gateway, possibly as used in HomePortal and other product lines, allows remote attackers to read arbitrary files via a .. (dot dot) in the return parameter. NOTE: this issue was reported as XSS, but this might be a terminology...

7.2AI Score

0.015EPSS

2007-11-14 02:00 AM
27
cve
cve

CVE-2007-4388

2wire 1701HG and 2071 Gateway routers, with 5.29.51 and possibly 3.17.5 software, have a blank password by...

6.9AI Score

0.004EPSS

2007-08-17 10:17 PM
25
cve
cve

CVE-2007-4387

Cross-site request forgery (CSRF) vulnerability in /xslt in 2wire 1701HG and 2071 Gateway routers, with 3.17.5 and 5.29.51 software, allows remote attackers to perform certain configuration changes as...

6.9AI Score

0.262EPSS

2007-08-17 10:17 PM
35
cve
cve

CVE-2007-4389

Cross-site request forgery (CSRF) vulnerability in /xslt in 2wire 1701HG, 1800HW, and 2071 Gateway routers, with 3.17.5, 3.7.1, and 5.29.51 software, allows remote attackers to create DNS mappings as administrators, and conduct DNS poisoning attacks, via the NAME and ADDR...

6.9AI Score

0.034EPSS

2007-08-17 10:17 PM
22