CVE-2014-0355
- EPSS 0.12%
- Veröffentlicht 15.04.2014 10:55:12
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple stack-based buffer overflows on the ZyXEL Wireless N300 NetUSB NBG-419N router with firmware 1.00(BFQ.6)C0 allow man-in-the-middle attackers to execute arbitrary code via (1) a long temp attribute in a yweather:condition element in a forecas...
CVE-2014-0356
- EPSS 0.5%
- Veröffentlicht 15.04.2014 10:55:12
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ZyXEL Wireless N300 NetUSB NBG-419N router with firmware 1.00(BFQ.6)C0 allows remote attackers to execute arbitrary code via shell metacharacters in input to the (1) detectWeather, (2) set_language, (3) SystemCommand, or (4) NTPSyncWithHost funct...
CVE-2014-0353
- EPSS 0.12%
- Veröffentlicht 15.04.2014 10:55:11
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ZyXEL Wireless N300 NetUSB NBG-419N router with firmware 1.00(BFQ.6)C0 allows remote attackers to bypass authentication by using %2F sequences in place of / (slash) characters.
CVE-2014-0354
- EPSS 0.17%
- Veröffentlicht 15.04.2014 10:55:11
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ZyXEL Wireless N300 NetUSB NBG-419N router with firmware 1.00(BFQ.6)C0 has a hardcoded password of qweasdzxc for an unspecified account, which allows remote attackers to obtain index.asp login access via an HTTP request.