Vulnerabilities > Comba

DATE CVE VULNERABILITY TITLE RISK
2020-03-19 CVE-2019-15654 Missing Authentication for Critical Function vulnerability in Comba Ac2400 Firmware
Comba AC2400 devices are prone to password disclosure via a simple crafted /09/business/upgrade/upcfgAction.php?download=true request to the web management server.
network
low complexity
comba CWE-306
7.5
2020-03-19 CVE-2019-15653 Insufficiently Protected Credentials vulnerability in Comba Ap2600-I - A02 - 0202N00Pd2 Firmware
Comba AP2600-I devices through A02,0202N00PD2 are prone to password disclosure via an insecure authentication mechanism.
network
low complexity
comba CWE-522
7.5