Vulnerabilities > Dreambox

DATE CVE VULNERABILITY TITLE RISK
2017-09-04 CVE-2017-14135 OS Command Injection vulnerability in Dreambox Opendreambox 2.0
enigma2-plugins/blob/master/webadmin/src/WebChilds/Script.py in the webadmin plugin for opendreambox 2.0.0 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the command parameter to the /script URI.
network
low complexity
dreambox CWE-78
critical
10.0
2008-09-05 CVE-2008-3936 Improper Input Validation vulnerability in Dreambox Dm500C
The web interface in Dreambox DM500C allows remote attackers to cause a denial of service (application hang) via a long URI.
network
low complexity
dreambox CWE-20
7.8