CVE-2024-42658
- EPSS 14.39%
- Veröffentlicht 19.08.2024 17:15:08
- Zuletzt bearbeitet 20.08.2024 16:12:50
An issue in wishnet Nepstech Wifi Router NTPL-XPON1GFEVN v1.0 allows a remote attacker to obtain sensitive information via the cookie's parameter
CVE-2024-42657
- EPSS 2.09%
- Veröffentlicht 19.08.2024 17:15:07
- Zuletzt bearbeitet 20.08.2024 16:13:12
An issue in wishnet Nepstech Wifi Router NTPL-XPON1GFEVN v1.0 allows a remote attacker to obtain sensitive information via the lack of encryption during login process
CVE-2024-40119
- EPSS 7.01%
- Veröffentlicht 17.07.2024 20:15:06
- Zuletzt bearbeitet 21.11.2024 09:30:57
Nepstech Wifi Router xpon (terminal) model NTPL-Xpon1GFEVN v.1.0 Firmware V2.0.1 contains a Cross-Site Request Forgery (CSRF) vulnerability in the password change function, which allows remote attackers to change the admin password without the user's...
CVE-2024-37855
- EPSS 1%
- Veröffentlicht 25.06.2024 21:15:59
- Zuletzt bearbeitet 21.11.2024 09:24:24
An issue in Nepstech Wifi Router xpon (terminal) NTPL-Xpon1GFEVN, hardware verstion 1.0 firmware 2.0.1 allows a remote attacker to execute arbitrary code via the router's Telnet port 2345 without requiring authentication credentials.