Known Vulnerabilities for products from Jio

Listed below are 7 of the newest known vulnerabilities associated with the vendor "Jio".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Jio can be found at device.report : Jio

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2019-7746 json JioFi 4 jmr1140 Amtel_JMR1140_R12.07 devices allow remote attackers to obtain an admin token by making a /cgi-bin/qcmap_auth ... 8.1 - HIGH 2019-05-07 2019-05-08
CVE-2019-7745 json JioFi 4 jmr1140 Amtel_JMR1140_R12.07 devices allow remote attackers to obtain the Wi-Fi password by making a cgi-bin/qcmap_we... 9.8 - CRITICAL 2019-05-07 2020-08-24
CVE-2019-7687 json cgi-bin/qcmap_web_cgi on JioFi 4 jmr1140 Amtel_JMR1140_R12.07 devices has POST based reflected XSS via the Page parameter. No... 6.1 - MEDIUM 2019-05-07 2019-05-08
CVE-2019-7440 json JioFi 4G M2S 1.0.2 devices have CSRF via the SSID name and Security Key field under Edit Wi-Fi Settings (aka a SetWiFi_Settin... 6.5 - MEDIUM 2019-03-21 2019-04-02
CVE-2019-7439 json cgi-bin/qcmap_web_cgi on JioFi 4G M2S 1.0.2 devices allows a DoS (Hang) via the mask POST parameter. 6.5 - MEDIUM 2019-03-21 2020-08-24
CVE-2019-7438 json cgi-bin/qcmap_web_cgi on JioFi 4G M2S 1.0.2 devices has XSS and HTML injection via the mask POST parameter. 6.1 - MEDIUM 2019-03-21 2019-04-26
CVE-2018-15181 json JioFi 4G Hotspot M2S devices allow attackers to cause a denial of service (secure configuration outage) via an XSS payload in... 6.5 - MEDIUM 2018-08-09 2019-10-03

Known software with vulnerabilities from Jio

Type Vendor Product Version
HardwareJioJmr1140-
Operating
System
JioJmr1140 Firmwareamtel_jmr1140_r12.07

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report