Vulnerabilities > Belkin > High

DATE CVE VULNERABILITY TITLE RISK
2014-06-19 CVE-2014-2962 Path Traversal vulnerability in Belkin N150 F9K1009 and N150 F9K1009 Firmware
Absolute path traversal vulnerability in the webproc cgi module on the Belkin N150 F9K1009 v1 router with firmware before 1.00.08 allows remote attackers to read arbitrary files via a full pathname in the getpage parameter.
network
low complexity
belkin CWE-22
7.8
2014-02-22 CVE-2013-6951 Cryptographic Issues vulnerability in Belkin Wemo Home Automation Firmware 2769
The Belkin WeMo Home Automation firmware before 3949 does not maintain a set of Certification Authority public keys, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary X.509 certificate.
network
belkin CWE-310
7.1
2014-02-22 CVE-2013-6950 Cryptographic Issues vulnerability in Belkin Wemo Home Automation Firmware 2769
The Belkin WeMo Home Automation firmware before 3949 does not use SSL for the distribution feed, which allows man-in-the-middle attackers to install arbitrary firmware by spoofing a distribution server.
network
low complexity
belkin CWE-310
7.8
2014-02-22 CVE-2013-6948 Code Injection vulnerability in Belkin Wemo Home Automation Firmware 2769
The peerAddresses API in the Belkin WeMo Home Automation firmware before 3949 allows remote attackers to read arbitrary files via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.
network
low complexity
belkin CWE-94
7.8
2008-03-10 CVE-2008-1245 Improper Input Validation vulnerability in Belkin F5D7230-4
cgi-bin/setup_virtualserver.exe on the Belkin F5D7230-4 router with firmware 9.01.10 allows remote attackers to cause a denial of service (control center outage) via an HTTP request with invalid POST data and a "Connection: Keep-Alive" header.
network
low complexity
belkin CWE-20
7.8
2005-07-26 CVE-2005-2374 Remote Security vulnerability in Belkin 54G Wireless Router
Belkin 54g wireless routers do not properly set an administrative password, which allows remote attackers to gain access via the (1) Telnet or (2) web administration interfaces.
network
low complexity
belkin
7.5
2005-05-02 CVE-2005-0833 Multiple vulnerability in Belkin 54G Wireless Router F5D7130
Belkin 54G (F5D7130) wireless router allows remote attackers to access restricted resources by sniffing URIs from UPNP datagrams, then accessing those URIs, which do not require authentication.
network
low complexity
belkin
7.5
2003-04-11 CVE-2002-1431 Unspecified vulnerability in Belkin F5D5230-4 4-Port Cable DSL Gateway Router 1.20.000
Belkin F5D5230-4 4-Port Cable/DSL Gateway Router 1.20.000 modifies the source IP address of internal packets to that of the router's external interface when forwarding a request from an internal host to an internal web server, which allows remote attackers to hide which host is being used to access the web server.
network
low complexity
belkin
7.5