Vsolcn

V1600d4l Firmware

7 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.28%
  • Veröffentlicht 29.11.2020 01:15:11
  • Zuletzt bearbeitet 21.11.2024 05:23:57

An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1.01.48, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4 OLT devices. It is possible to elevate the privilege of a CLI user (to full administrative access) b...

Exploit
  • EPSS 0.05%
  • Veröffentlicht 29.11.2020 01:15:11
  • Zuletzt bearbeitet 21.11.2024 05:23:57

An issue was discovered on V-SOL V1600D4L V1.01.49 and V1600D-MINI V1.01.48 OLT devices. During the process of updating the firmware, the update script starts a telnetd -l /bin/sh process that does not require authentication for TELNET access.

  • EPSS 0.11%
  • Veröffentlicht 29.11.2020 01:15:11
  • Zuletzt bearbeitet 21.11.2024 05:23:57

An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1.01.48, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4 OLT devices. TELNET is offered by default but SSH is not always available. An attacker can intercept...

  • EPSS 2.7%
  • Veröffentlicht 29.11.2020 01:15:11
  • Zuletzt bearbeitet 21.11.2024 05:23:57

An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1.01.48, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4 OLT devices. Command injection can occur in "upload tftp syslog" and "upload tftp configuration" in ...

  • EPSS 0.05%
  • Veröffentlicht 29.11.2020 01:15:11
  • Zuletzt bearbeitet 21.11.2024 05:23:58

An issue was discovered on V-SOL V1600D4L V1.01.49 and V1600D-MINI V1.01.48 OLT devices. A hardcoded RSA private key (specific to V1600D4L and V1600D-MINI) is contained in the firmware images.

  • EPSS 0.24%
  • Veröffentlicht 29.11.2020 01:15:10
  • Zuletzt bearbeitet 21.11.2024 05:23:56

An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1.01.48, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4 OLT devices. An low-privileged (non-admin) attacker can use a hardcoded password (4ef9cea10b2362f15b...

Exploit
  • EPSS 0.41%
  • Veröffentlicht 29.11.2020 01:15:10
  • Zuletzt bearbeitet 21.11.2024 05:23:56

An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1.01.48, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4 OLT devices. There is an !j@l#y$z%x6x7q8c9z) password for the admin account to authenticate to the T...