Vulnerabilities > Motorola

DATE CVE VULNERABILITY TITLE RISK
2021-07-21 CVE-2020-21934 Missing Authentication for Critical Function vulnerability in Motorola CX2 Firmware 1.0.2
An issue was discovered in Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n where authentication to download the Syslog could be bypassed.
network
low complexity
motorola CWE-306
7.5
2021-07-21 CVE-2020-21935 OS Command Injection vulnerability in Motorola CX2 Firmware 1.0.2
A command injection vulnerability in HNAP1/GetNetworkTomographySettings of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to execute arbitrary code.
network
low complexity
motorola CWE-78
critical
9.8
2021-07-21 CVE-2020-21936 Missing Authentication for Critical Function vulnerability in Motorola CX2 Firmware 1.0.2
An issue in HNAP1/GetMultipleHNAPs of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to access the components GetStationSettings, GetWebsiteFilterSettings and GetNetworkSettings without authentication.
network
low complexity
motorola CWE-306
5.3
2021-07-21 CVE-2020-21937 OS Command Injection vulnerability in Motorola CX2 Firmware 1.0.2
An command injection vulnerability in HNAP1/SetWLanApcliSettings of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to execute arbitrary system commands.
network
low complexity
motorola CWE-78
critical
9.8
2021-04-13 CVE-2021-3460 Improper Certificate Validation vulnerability in Motorola Mh702X Firmware
The Motorola MH702x devices, prior to version 2.0.0.301, do not properly verify the server certificate during communication with the support server which could lead to the communication channel being accessible by an attacker.
network
low complexity
motorola CWE-295
critical
9.8
2020-03-23 CVE-2020-10874 Missing Authentication for Critical Function vulnerability in Motorola products
Motorola FX9500 devices allow remote attackers to read database files.
network
low complexity
motorola CWE-306
7.5
2019-09-12 CVE-2019-16257 Unspecified vulnerability in Motorola Firmware
Some Motorola devices include the SIMalliance Toolbox Browser (aka S@T Browser) on the UICC, which might allow remote attackers to retrieve location and IMEI information, or retrieve other data or execute certain commands, via SIM Toolkit (STK) instructions in an SMS message, aka Simjacker.
network
low complexity
motorola
critical
9.8
2019-08-23 CVE-2019-15513 Improper Locking vulnerability in multiple products
An issue was discovered in OpenWrt libuci (aka Library for the Unified Configuration Interface) before 15.05.1 as used on Motorola CX2L MWR04L 1.01 and C1 MWR03 1.01 devices.
network
low complexity
openwrt motorola CWE-667
7.5
2019-07-01 CVE-2019-13129 Uncontrolled Recursion vulnerability in Motorola Cx2L Mwr04L Firmware 1.01
On the Motorola router CX2L MWR04L 1.01, there is a stack consumption (infinite recursion) issue in scopd via TCP port 8010 and UDP port 8080.
network
low complexity
motorola CWE-674
7.5
2019-05-23 CVE-2019-12297 Use of Externally-Controlled Format String vulnerability in Motorola CX2 Firmware and M2 Firmware
An issue was discovered in scopd on Motorola routers CX2 1.01 and M2 1.01.
network
low complexity
motorola CWE-134
critical
9.8