Vulnerabilities > Innominate > Mguard Firmware > 7.0.2

DATE CVE VULNERABILITY TITLE RISK
2014-12-20 CVE-2014-9193 Permissions, Privileges, and Access Controls vulnerability in Innominate Mguard Firmware
Innominate mGuard with firmware before 7.6.6 and 8.x before 8.1.4 allows remote authenticated admins to obtain root privileges by changing a PPP configuration setting.
network
low complexity
innominate CWE-264
critical
9.0
2014-07-30 CVE-2014-2356 Information Exposure vulnerability in Innominate Mguard Firmware
Innominate mGuard before 7.6.4 and 8.x before 8.0.3 does not require authentication for snapshot downloads, which allows remote attackers to obtain sensitive information via a crafted HTTPS request.
network
low complexity
innominate CWE-200
5.0
2012-06-19 CVE-2012-3006 Cryptographic Issues vulnerability in Innominate Mguard Firmware
The Innominate mGuard Smart HW before HW-101130 and BD before BD-101030, mGuard industrial RS, mGuard delta HW before HW-103060 and BD before BD-211010, mGuard PCI, mGuard blade, and EAGLE mGuard appliances with software before 7.5.0 do not use a sufficient source of entropy for private keys, which makes it easier for man-in-the-middle attackers to spoof (1) HTTPS or (2) SSH servers by predicting a key value.
network
high complexity
innominate CWE-310
7.1