Vulnerabilities > Hitrontech > Coda 5310 Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-06-02 CVE-2022-47616 OS Command Injection vulnerability in Hitrontech Coda-5310 Firmware
Hitron CODA-5310 has insufficient filtering for specific parameters in the connection test function.
network
low complexity
hitrontech CWE-78
7.2
2023-06-02 CVE-2022-47617 Use of Hard-coded Credentials vulnerability in Hitrontech Coda-5310 Firmware
Hitron CODA-5310 has hard-coded encryption/decryption keys in the program code.
network
low complexity
hitrontech CWE-798
7.2
2023-06-02 CVE-2023-30602 Missing Encryption of Sensitive Data vulnerability in Hitrontech Coda-5310 Firmware 7.2.4.7.1B3
Hitron Technologies CODA-5310’s Telnet function transfers sensitive data in plaintext.
network
low complexity
hitrontech CWE-311
7.5
2023-06-02 CVE-2023-30603 Improper Authentication vulnerability in Hitrontech Coda-5310 Firmware 7.2.4.7.1B3
Hitron Technologies CODA-5310 Telnet function with the default account and password, and there is no warning or prompt to ask users to change the default password and account.
network
low complexity
hitrontech CWE-287
critical
9.8
2023-06-02 CVE-2023-30604 Missing Authentication for Critical Function vulnerability in Hitrontech Coda-5310 Firmware 7.2.4.7.1B3
It is identified a vulnerability of insufficient authentication in the system configuration interface of Hitron Technologies CODA-5310.
network
low complexity
hitrontech CWE-306
critical
9.8