Vulnerabilities > Seiko SOL

DATE CVE VULNERABILITY TITLE RISK
2022-08-29 CVE-2022-36557 Unrestricted Upload of File with Dangerous Type vulnerability in Seiko-Sol products
Seiko SkyBridge MB-A100/A110 v4.2.0 and below was discovered to contain an arbitrary file upload vulnerability via the restore backup function.
network
low complexity
seiko-sol CWE-434
critical
9.8
2022-08-29 CVE-2022-36558 Use of Hard-coded Credentials vulnerability in Seiko-Sol products
Seiko SkyBridge MB-A100/A110 v4.2.0 and below implements a hard-coded passcode for the root account.
network
low complexity
seiko-sol CWE-798
critical
9.8
2022-08-29 CVE-2022-36559 Command Injection vulnerability in Seiko-Sol Skybridge Mb-A200 Firmware 01.00.04
Seiko SkyBridge MB-A200 v01.00.04 and below was discovered to contain a command injection vulnerability via the Ping parameter at ping_exec.cgi.
network
low complexity
seiko-sol CWE-77
critical
9.8
2022-08-29 CVE-2022-36560 Use of Hard-coded Credentials vulnerability in Seiko-Sol Skybridge Mb-A200 Firmware 01.00.04
Seiko SkyBridge MB-A200 v01.00.04 and below was discovered to contain multiple hard-coded passcodes for root.
network
low complexity
seiko-sol CWE-798
critical
9.8