Known Vulnerabilities for products from Netis-systems
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Netis-systems".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Additional devices specifications by Netis-systems can be found at device.report : Netis-systems
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2024-22729 json | 9.8 - CRITICAL | 2024-01-25 | 2024-02-01 | |
| CVE-2023-45468 json | Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the pingWdogIp. This vulnerability allows attackers to... | 7.5 - HIGH | 2023-10-13 | 2023-10-16 |
| CVE-2023-45467 json | Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the ntpServIP parameter in the Time Se... | 9.8 - CRITICAL | 2023-10-13 | 2023-10-19 |
| CVE-2023-45466 json | Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the pin_host parameter in the WPS Sett... | 9.8 - CRITICAL | 2023-10-13 | 2023-10-16 |
| CVE-2023-45465 json | Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the ddnsDomainName parameter in the Dy... | 9.8 - CRITICAL | 2023-10-13 | 2023-10-19 |
| CVE-2023-45464 json | Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the servDomain parameter. This vulnerability allows at... | 7.5 - HIGH | 2023-10-13 | 2023-10-19 |
| CVE-2023-45463 json | Netis N3Mv2-V1.0.1.865 was discovered to contain a buffer overflow via the hostName parameter in the FUN_0040dabc function. T... | 7.5 - HIGH | 2023-10-13 | 2023-10-16 |
| CVE-2023-44860 json | An issue in NETIS SYSTEMS N3Mv2 v.1.0.1.865 allows a remote attacker to cause a denial of service via the authorization compo... | 7.5 - HIGH | 2023-10-06 | 2023-11-07 |
| CVE-2023-43893 json | Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the wakeup_mac parameter in the Wake-O... | 9.8 - CRITICAL | 2023-10-02 | 2023-10-04 |
| CVE-2023-43892 json | Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the Hostname parameter within the WAN ... | 9.8 - CRITICAL | 2023-10-02 | 2023-10-04 |
| CVE-2023-43891 json | Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability in the Changing Username and Password func... | 9.8 - CRITICAL | 2023-10-02 | 2023-10-04 |
| CVE-2023-43890 json | Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability in the diagnostic tools page. This vulnera... | 8.8 - HIGH | 2023-10-02 | 2023-10-04 |
| CVE-2023-43134 json | There is an unauthorized access vulnerability in Netis 360RAC1200 v1.3.4517, which allows attackers to obtain sensitive infor... | 9.8 - CRITICAL | 2023-09-20 | 2023-09-22 |
| CVE-2023-42336 json | An issue in NETIS SYSTEMS WF2409Ev4 v.1.0.1.705 allows a remote attacker to execute arbitrary code and obtain sensitive infor... | 9.8 - CRITICAL | 2023-09-16 | 2023-09-20 |
| CVE-2023-38829 json | An issue in NETIS SYSTEMS WF2409E v.3.6.42541 allows a remote attacker to execute arbitrary code via the ping and traceroute ... | 8.8 - HIGH | 2023-09-11 | 2023-09-13 |
| CVE-2023-0114 json | A vulnerability was found in Netis Netcore Router. It has been rated as problematic. Affected by this issue is some unknown f... | 5.5 - MEDIUM | 2023-01-07 | 2023-11-07 |
| CVE-2023-0113 json | A vulnerability was found in Netis Netcore Router up to 2.2.6. It has been declared as problematic. Affected by this vulnerab... | 7.5 - HIGH | 2023-01-07 | 2023-11-07 |
| CVE-2021-26747 json | Netis WF2780 2.3.40404 and WF2411 1.1.29629 devices allow Shell Metacharacter Injection into the ping command, leading to rem... | 9.8 - CRITICAL | 2021-02-18 | 2021-02-24 |
| CVE-2020-8946 json | Netis WF2471 v1.2.30142 devices allow an authenticated attacker to execute arbitrary OS commands via shell metacharacters in ... | 8.8 - HIGH | 2020-02-12 | 2020-02-21 |
| CVE-2019-20076 json | On Netis DL4323 devices, XSS exists via the form2Ddns.cgi username parameter (DynDns settings of the Dynamic DNS Configuratio... | 6.1 - MEDIUM | 2019-12-30 | 2020-01-02 |
Known software with vulnerabilities from Netis-systems
| Type | Vendor | Product | Version |
|---|---|---|---|
| Hardware | Netis-systems | Dl4343 | - |
| Operating System | Netis-systems | Dl4343 Firmware | - |
| Hardware | Netis-systems | Wf2411 | - |
| Operating System | Netis-systems | Wf2411 Firmware | 1.1.29629 |
| Operating System | Netis-systems | Wf2419 Firmware | 1.2.31805 |
| Hardware | Netis-systems | Wf2780 | - |
| Operating System | Netis-systems | Wf2780 Firmware | 2.3.40404 |