Vulnerabilities > Skyworthdigital > Cm5100 Firmware
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-01-17 | CVE-2023-51728 | Cross-site Scripting vulnerability in Skyworthdigital Cm5100 Firmware 4.1.1.24 This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the SMTP Password parameter at its web interface. | 5.4 |
2024-01-17 | CVE-2023-51729 | Cross-site Scripting vulnerability in Skyworthdigital Cm5100 Firmware 4.1.1.24 This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the DDNS Username parameter at its web interface. | 5.4 |
2024-01-17 | CVE-2023-51730 | Cross-site Scripting vulnerability in Skyworthdigital Cm5100 Firmware 4.1.1.24 This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the DDNS Password parameter at its web interface. | 5.4 |
2024-01-17 | CVE-2023-51731 | Cross-site Scripting vulnerability in Skyworthdigital Cm5100 Firmware 4.1.1.24 This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Hostname parameter at its web interface. | 5.4 |
2024-01-17 | CVE-2023-51732 | Cross-site Scripting vulnerability in Skyworthdigital Cm5100 Firmware 4.1.1.24 This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the IPsec Tunnel Name parameter at its web interface. | 5.4 |
2018-12-23 | CVE-2018-20398 | Insufficiently Protected Credentials vulnerability in Skyworthdigital products Skyworth CM5100 V1.1.0, CM5100-440 V1.2.1, CM5100-511 4.1.0.14, CM5100-GHD00 V1.2.2, and CM5100.g2 4.1.0.17 devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.3.6.1.4.1.4491.2.4.1.1.6.1.2.0 SNMP requests. | 9.8 |