Vulnerabilities > Crestron > Airmedia AM 100 Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2019-01-18 CVE-2019-3910 Unspecified vulnerability in Crestron Airmedia Am-100 Firmware 1.2.1/1.4.0.12/1.6.0
Crestron AM-100 before firmware version 1.6.0.2 contains an authentication bypass in the web interface's return.cgi script.
network
low complexity
crestron
critical
9.1
2016-08-03 CVE-2016-5640 Command Injection vulnerability in Crestron Airmedia Am-100 Firmware 1.2.1
Directory traversal vulnerability in cgi-bin/rftest.cgi on Crestron AirMedia AM-100 devices with firmware before 1.4.0.13 allows remote attackers to execute arbitrary commands via a ..
network
low complexity
crestron CWE-77
critical
9.8