Vulnerabilities > Motorola > High

DATE CVE VULNERABILITY TITLE RISK
2022-07-26 CVE-2022-30276 Missing Authentication for Critical Function vulnerability in Motorola products
The Motorola MOSCAD and ACE line of RTUs through 2022-05-02 omit an authentication requirement.
network
low complexity
motorola CWE-306
7.5
2021-07-21 CVE-2020-21933 Information Exposure Through Log Files vulnerability in Motorola CX2 Firmware 1.0.2
An issue was discovered in Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n where the admin password and private key could be found in the log tar package.
network
low complexity
motorola CWE-532
7.5
2021-07-21 CVE-2020-21934 Missing Authentication for Critical Function vulnerability in Motorola CX2 Firmware 1.0.2
An issue was discovered in Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n where authentication to download the Syslog could be bypassed.
network
low complexity
motorola CWE-306
7.5
2020-03-23 CVE-2020-10874 Missing Authentication for Critical Function vulnerability in Motorola products
Motorola FX9500 devices allow remote attackers to read database files.
network
low complexity
motorola CWE-306
7.5
2019-08-23 CVE-2019-15513 Improper Locking vulnerability in multiple products
An issue was discovered in OpenWrt libuci (aka Library for the Unified Configuration Interface) before 15.05.1 as used on Motorola CX2L MWR04L 1.01 and C1 MWR03 1.01 devices.
network
low complexity
openwrt motorola CWE-667
7.5
2019-07-01 CVE-2019-13129 Uncontrolled Recursion vulnerability in Motorola Cx2L Mwr04L Firmware 1.01
On the Motorola router CX2L MWR04L 1.01, there is a stack consumption (infinite recursion) issue in scopd via TCP port 8010 and UDP port 8080.
network
low complexity
motorola CWE-674
7.5
2018-07-02 CVE-2018-12499 Improper Certificate Validation vulnerability in Motorola Mbp853 Firmware
The Motorola MBP853 firmware does not correctly validate server certificates.
network
high complexity
motorola CWE-295
7.4
2015-12-23 CVE-2015-7936 Cross-Site Request Forgery (CSRF) vulnerability in Motorola Moscad IP Gateway Firmware
Cross-site request forgery (CSRF) vulnerability in Motorola Solutions MOSCAD IP Gateway allows remote attackers to hijack the authentication of administrators for requests that modify a password.
network
low complexity
motorola CWE-352
7.5
2015-12-23 CVE-2015-7935 Information Exposure vulnerability in Motorola Moscad IP Gateway Firmware
Motorola Solutions MOSCAD IP Gateway allows remote attackers to read arbitrary files via unspecified vectors.
network
low complexity
motorola CWE-200
7.5
2013-04-13 CVE-2013-2596 Integer Overflow or Wraparound vulnerability in multiple products
Integer overflow in the fb_mmap function in drivers/video/fbmem.c in the Linux kernel before 3.8.9, as used in a certain Motorola build of Android 4.1.2 and other products, allows local users to create a read-write memory mapping for the entirety of kernel memory, and consequently gain privileges, via crafted /dev/graphics/fb0 mmap2 system calls, as demonstrated by the Motochopper pwn program.
local
low complexity
linux motorola CWE-190
7.8