Vulnerabilities > Seiko SOL > Skybridge MB A100 Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-08-29 CVE-2022-36558 Use of Hard-coded Credentials vulnerability in Seiko-Sol products
Seiko SkyBridge MB-A100/A110 v4.2.0 and below implements a hard-coded passcode for the root account.
network
low complexity
seiko-sol CWE-798
critical
9.8
2022-08-29 CVE-2022-36557 Unrestricted Upload of File with Dangerous Type vulnerability in Seiko-Sol products
Seiko SkyBridge MB-A100/A110 v4.2.0 and below was discovered to contain an arbitrary file upload vulnerability via the restore backup function.
network
low complexity
seiko-sol CWE-434
critical
9.8
2022-08-29 CVE-2022-36556 Command Injection vulnerability in Seiko-Sol products
Seiko SkyBridge MB-A100/A110 v4.2.0 and below was discovered to contain a command injection vulnerability via the ipAddress parameter at 07system08execute_ping_01.
network
low complexity
seiko-sol CWE-77
critical
9.8