Vulnerabilities > Eurotel

DATE CVE VULNERABILITY TITLE RISK
2023-12-19 CVE-2023-6928 Improper Restriction of Excessive Authentication Attempts vulnerability in Eurotel Etl3100 Firmware 01C01/01X37
EuroTel ETL3100 versions v01c01 and v01x37 does not limit the number of attempts to guess administrative credentials in remote password attacks to gain full control of the system.
network
low complexity
eurotel CWE-307
critical
9.8
2023-12-19 CVE-2023-6929 Authorization Bypass Through User-Controlled Key vulnerability in Eurotel Etl3100 Firmware 01C01/01X37
EuroTel ETL3100 versions v01c01 and v01x37 are vulnerable to insecure direct object references that occur when the application provides direct access to objects based on user-supplied input.
network
low complexity
eurotel CWE-639
critical
9.8
2023-12-19 CVE-2023-6930 Unspecified vulnerability in Eurotel Etl3100 Firmware 01C01/01X37
EuroTel ETL3100 versions v01c01 and v01x37 suffer from an unauthenticated configuration and log download vulnerability.
network
low complexity
eurotel
critical
9.8