Known Vulnerabilities for Iqrouter Firmware by Evenroute
Listed below are 6 of the newest known vulnerabilities associated with "Iqrouter Firmware" by "Evenroute".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-11968 json | ** DISPUTED ** In the web-panel in IQrouter through 3.3.1, remote attackers can read system logs because of Incorrect Access ... | 7.5 - HIGH | 2020-04-21 | 2023-11-07 |
| CVE-2020-11967 json | ** DISPUTED ** In IQrouter through 3.3.1, remote attackers can control the device (restart network, reboot, upgrade, reset) b... | 9.8 - CRITICAL | 2020-04-21 | 2023-11-07 |
| CVE-2020-11966 json | ** DISPUTED ** In IQrouter through 3.3.1, the Lua function reset_password in the web-panel allows remote attackers to change ... | 9.8 - CRITICAL | 2020-04-21 | 2023-11-07 |
| CVE-2020-11965 json | ** DISPUTED ** In IQrouter through 3.3.1, there is a root user without a password, which allows attackers to gain full remote... | 9.8 - CRITICAL | 2020-04-21 | 2023-11-07 |
| CVE-2020-11964 json | ** DISPUTED ** In IQrouter through 3.3.1, the Lua function diag_set_password in the web-panel allows remote attackers to chan... | 7.5 - HIGH | 2020-04-21 | 2023-11-07 |
| CVE-2020-11963 json | ** DISPUTED ** IQrouter through 3.3.1, when unconfigured, has multiple remote code execution vulnerabilities in the web-panel... | 9.8 - CRITICAL | 2020-04-21 | 2023-11-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Evenroute | Iqrouter Firmware | 3.3.1 |