CVE-2018-9111
- EPSS 0.21%
- Veröffentlicht 10.05.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 04:14:59
Cross Site Scripting (XSS) exists on the Foxconn FEMTO AP-FC4064-T AP_GT_B38_5.8.3lb15-W47 LTE Build 15 via the configuration of a user account. An attacker can execute arbitrary script on an unsuspecting user's browser.
CVE-2018-9112
- EPSS 0.46%
- Veröffentlicht 10.05.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 04:14:59
A low privileged admin account with a weak default password of admin exists on the Foxconn FEMTO AP-FC4064-T AP_GT_B38_5.8.3lb15-W47 LTE Build 15. In addition, its web management page relies on the existence or values of cookies when performing secur...
CVE-2018-6311
- EPSS 0.05%
- Veröffentlicht 10.03.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:10:27
One can gain root access on the Foxconn femtocell FEMTO AP-FC4064-T version AP_GT_B38_5.8.3lb15-W47 LTE Build 15 via UART pins without any restrictions, which leads to full system compromise and disclosure of user communications.
- EPSS 0.29%
- Veröffentlicht 10.03.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:10:27
A privileged account with a weak default password on the Foxconn femtocell FEMTO AP-FC4064-T version AP_GT_B38_5.8.3lb15-W47 LTE Build 15 can be used to turn on the TELNET service via the web interface, which allows root login without any password. T...