Vulnerabilities > Level1

DATE CVE VULNERABILITY TITLE RISK
2024-10-30 CVE-2024-33699 Unverified Password Change vulnerability in Level1 Wbr-6012 Firmware R0.40E6
The LevelOne WBR-6012 router's web application has a vulnerability in its firmware version R0.40e6, allowing attackers to change the administrator password and gain higher privileges without the current password.
network
low complexity
level1 CWE-620
8.8
2024-10-30 CVE-2024-33700 Unspecified vulnerability in Level1 Wbr-6012 Firmware R0.40E6
The LevelOne WBR-6012 router firmware R0.40e6 suffers from an input validation vulnerability within its FTP functionality, enabling attackers to cause a denial of service through a series of malformed FTP commands.
network
low complexity
level1
7.5
2024-07-08 CVE-2023-34435 Improper Verification of Cryptographic Signature vulnerability in multiple products
A firmware update vulnerability exists in the boa formUpload functionality of Realtek rtl819x Jungle SDK v3.4.11.
network
low complexity
realtek level1 CWE-347
7.2
2024-07-08 CVE-2023-41251 Out-of-bounds Write vulnerability in multiple products
A stack-based buffer overflow vulnerability exists in the boa formRoute functionality of Realtek rtl819x Jungle SDK v3.4.11.
network
low complexity
realtek level1 CWE-787
7.2
2024-07-08 CVE-2023-45215 Out-of-bounds Write vulnerability in multiple products
A stack-based buffer overflow vulnerability exists in the boa setRepeaterSsid functionality of Realtek rtl819x Jungle SDK v3.4.11.
network
low complexity
realtek level1 CWE-787
7.2
2024-07-08 CVE-2023-45742 Integer Overflow or Wraparound vulnerability in multiple products
An integer overflow vulnerability exists in the boa updateConfigIntoFlash functionality of Realtek rtl819x Jungle SDK v3.4.11.
network
low complexity
realtek level1 CWE-190
7.2
2024-07-08 CVE-2023-46685 Use of Hard-coded Credentials vulnerability in Level1 Wbr-6013 Firmware Rer4Av3411B2T2Rlev09170623
A hard-coded password vulnerability exists in the telnetd functionality of LevelOne WBR-6013 RER4_A_v3411b_2T2R_LEV_09_170623.
network
low complexity
level1 CWE-798
critical
9.8
2024-07-08 CVE-2023-47677 Cross-Site Request Forgery (CSRF) vulnerability in multiple products
A cross-site request forgery (csrf) vulnerability exists in the boa CSRF protection functionality of Realtek rtl819x Jungle SDK v3.4.11.
network
low complexity
realtek level1 CWE-352
8.8
2024-07-08 CVE-2023-47856 Out-of-bounds Write vulnerability in multiple products
A stack-based buffer overflow vulnerability exists in the boa set_RadvdPrefixParam functionality of Realtek rtl819x Jungle SDK v3.4.11.
network
low complexity
realtek level1 CWE-787
7.2
2024-07-08 CVE-2023-48270 Out-of-bounds Write vulnerability in multiple products
A stack-based buffer overflow vulnerability exists in the boa formDnsv6 functionality of Realtek rtl819x Jungle SDK v3.4.11.
network
low complexity
realtek level1 CWE-787
7.2