Dbbroadcast

Mozart Next 3000 Firmware

17 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.63%
  • Veröffentlicht 26.11.2025 00:36:29
  • Zuletzt bearbeitet 03.12.2025 16:47:40

Unauthenticated OS Command Injection (start_upgrade.php) in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform User input passed directly to e...

Exploit
  • EPSS 0.09%
  • Veröffentlicht 26.11.2025 00:34:11
  • Zuletzt bearbeitet 03.12.2025 16:47:18

Infinite Loop Denial of Service via Failed File Deletion in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform Infinite loop when unlink() fai...

Exploit
  • EPSS 0.56%
  • Veröffentlicht 26.11.2025 00:32:26
  • Zuletzt bearbeitet 03.12.2025 16:46:54

Unauthenticated Path Traversal with Arbitrary File Deletion in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform The deletehidden parameter a...

Exploit
  • EPSS 0.08%
  • Veröffentlicht 26.11.2025 00:29:57
  • Zuletzt bearbeitet 03.12.2025 16:46:43

Unauthenticated Arbitrary File Upload (status_contents.php) in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform Allows unauthenticated arbit...

Exploit
  • EPSS 0.1%
  • Veröffentlicht 18.11.2025 00:00:00
  • Zuletzt bearbeitet 08.12.2025 14:43:49

The Mozart FM Transmitter web management interface on version WEBMOZZI-00287, contains an unrestricted file upload vulnerability in the /patch.php endpoint. An attacker with administrative credentials can upload arbitrary files (e.g., PHP webshells),...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 18.11.2025 00:00:00
  • Zuletzt bearbeitet 06.12.2025 00:18:19

The Mozart FM Transmitter web management interface on version WEBMOZZI-00287, contains a reflected Cross-Site Scripting (XSS) vulnerability in the /main0.php endpoint. By injecting a malicious JavaScript payload into the ?m= query parameter, an attac...

Exploit
  • EPSS 0.53%
  • Veröffentlicht 18.11.2025 00:00:00
  • Zuletzt bearbeitet 08.12.2025 14:44:31

The Mozart FM Transmitter web management interface on version WEBMOZZI-00287, contains an unauthenticated file upload vulnerability in the /upload_file.php endpoint. An attacker can exploit this by sending a crafted POST request with a malicious file...