Known Vulnerabilities for products from Hinet

Listed below are 10 of the newest known vulnerabilities associated with the vendor "Hinet".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Hinet can be found at device.report : Hinet

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2022-35222 HiCOS Citizen verification component has a stack-based buffer overflow vulnerability due to insufficient parameter length val... 6.8 - MEDIUM 2022-08-02 2022-08-12
CVE-2022-32962 HiCOS’ client-side citizen certificate component has a double free vulnerability. An unauthenticated physical attacker can ... 6.8 - MEDIUM 2022-07-20 2022-08-02
CVE-2022-32961 HICOS’ client-side citizen digital certificate component has a stack-based buffer overflow vulnerability when reading IC ca... 6.8 - MEDIUM 2022-07-20 2022-08-02
CVE-2022-32960 HiCOS’ client-side citizen digital certificate component has a stack-based buffer overflow vulnerability when reading IC ca... 6.8 - MEDIUM 2022-07-20 2022-08-02
CVE-2022-32959 HiCOS’ client-side citizen digital certificate component has a stack-based buffer overflow vulnerability when reading IC ca... 6.8 - MEDIUM 2022-07-20 2023-06-29
CVE-2019-15066 An “invalid command” handler issue was discovered in HiNet GPON firmware < I040GWR190731. It allows an attacker to execut... 9.8 - CRITICAL 2019-10-17 2020-08-24
CVE-2019-15065 A service which is hosted on port 6998 in HiNet GPON firmware < I040GWR190731 allows an attacker to execute a specific comman... 7.5 - HIGH 2019-10-17 2021-07-21
CVE-2019-15064 HiNet GPON firmware version < I040GWR190731 allows an attacker login to device without any authentication. 9.8 - CRITICAL 2019-10-17 2020-08-24
CVE-2019-13412 A service which is hosted on port 3097 in HiNet GPON firmware < I040GWR190731 allows an attacker to execute a specific comman... 7.5 - HIGH 2019-10-17 2021-07-21
CVE-2019-13411 An “invalid command” handler issue was discovered in HiNet GPON firmware < I040GWR190731. It allows an attacker to execut... 9.8 - CRITICAL 2019-10-17 2020-08-24

Known software with vulnerabilities from Hinet

Type Vendor Product Version
HardwareHinetGpon-
Operating
System
HinetGpon Firmware-