Vulnerabilities > Inhandnetworks > Ir615 Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-10-19 CVE-2021-38478 Unspecified vulnerability in Inhandnetworks Ir615 Firmware 2.3.0.R4724/2.3.0.R4870
InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 are vulnerable to an attacker using a traceroute tool to inject commands into the device.
network
low complexity
inhandnetworks
critical
9.1
2021-10-19 CVE-2021-38474 Improper Restriction of Excessive Authentication Attempts vulnerability in Inhandnetworks Ir615 Firmware 2.3.0.R4724/2.3.0.R4870
InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 have has no account lockout policy configured for the login page of the product.
network
low complexity
inhandnetworks CWE-307
critical
9.8
2021-10-19 CVE-2021-38470 Unspecified vulnerability in Inhandnetworks Ir615 Firmware 2.3.0.R4724/2.3.0.R4870
InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 are vulnerable to an attacker using a ping tool to inject commands into the device.
network
low complexity
inhandnetworks
critical
9.1
2021-10-19 CVE-2021-38462 Weak Password Requirements vulnerability in Inhandnetworks Ir615 Firmware 2.3.0.R4724/2.3.0.R4870
InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 does not enforce an efficient password policy.
network
low complexity
inhandnetworks CWE-521
critical
9.8