Vulnerabilities > GL Inet > GL Ar300M Firmware > Critical
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-01-12 | CVE-2023-50919 | Improper Authentication vulnerability in Gl-Inet products An issue was discovered on GL.iNet devices before version 4.5.0. | 9.8 |
2024-01-03 | CVE-2023-50921 | Unspecified vulnerability in Gl-Inet products An issue was discovered on GL.iNet devices through 4.5.0. | 9.8 |
2023-12-12 | CVE-2023-46456 | Injection vulnerability in Gl-Inet Gl-Ar300M Firmware 3.216 In GL.iNET GL-AR300M routers with firmware 3.216 it is possible to inject arbitrary shell commands through the OpenVPN client file upload functionality. | 9.8 |
2023-12-12 | CVE-2023-46454 | OS Command Injection vulnerability in Gl-Inet Gl-Ar300M Firmware 4.3.7 In GL.iNET GL-AR300M routers with firmware v4.3.7, it is possible to inject arbitrary shell commands through a crafted package name in the package information functionality. | 9.8 |
2023-05-11 | CVE-2023-31475 | Classic Buffer Overflow vulnerability in Gl-Inet products An issue was discovered on GL.iNet devices before 3.216. | 9.8 |
2023-05-10 | CVE-2023-31471 | Unspecified vulnerability in Gl-Inet products An issue was discovered on GL.iNet devices before 3.216. | 9.8 |