Vulnerabilities > Syrotech

DATE CVE VULNERABILITY TITLE RISK
2024-07-26 CVE-2024-41684 Unspecified vulnerability in Syrotech Sy-Gpon-1110-Wdont Firmware 3.1.02231102
This vulnerability exists in SyroTech SY-GPON-1110-WDONT Router due to missing secure flag for the session cookies associated with the router's web management interface.
network
low complexity
syrotech
5.3
2024-07-26 CVE-2024-41685 Incorrect Permission Assignment for Critical Resource vulnerability in Syrotech Sy-Gpon-1110-Wdont Firmware 3.1.02231102
This vulnerability exists in SyroTech SY-GPON-1110-WDONT Router due to missing HTTPOnly flag for the session cookies associated with the router's web management interface.
network
low complexity
syrotech CWE-732
7.5
2024-07-26 CVE-2024-41686 Unspecified vulnerability in Syrotech Sy-Gpon-1110-Wdont Firmware 3.1.02231102
This vulnerability exists in SyroTech SY-GPON-1110-WDONT Router due to improper implementation of password policies.
local
low complexity
syrotech
3.3
2024-07-26 CVE-2024-41687 Cleartext Transmission of Sensitive Information vulnerability in Syrotech Sy-Gpon-1110-Wdont Firmware 3.1.02231102
This vulnerability exists in SyroTech SY-GPON-1110-WDONT Router due to transmission of password in plain text.
network
low complexity
syrotech CWE-319
7.5
2024-07-26 CVE-2024-41688 Cleartext Storage of Sensitive Information vulnerability in Syrotech Sy-Gpon-1110-Wdont Firmware 3.1.02231102
This vulnerability exists in SyroTech SY-GPON-1110-WDONT Router due lack of encryption in storing of usernames and passwords within the router's firmware/ database.
low complexity
syrotech CWE-312
4.6
2024-07-26 CVE-2024-41689 Cleartext Storage of Sensitive Information vulnerability in Syrotech Sy-Gpon-1110-Wdont Firmware 3.1.02231102
This vulnerability exists in SyroTech SY-GPON-1110-WDONT Router due to unencrypted storing of WPA/ WPS credentials within the router's firmware/ database.
low complexity
syrotech CWE-312
4.6
2024-07-26 CVE-2024-41690 Cleartext Storage of Sensitive Information vulnerability in Syrotech Sy-Gpon-1110-Wdont Firmware 3.1.02231102
This vulnerability exists in SyroTech SY-GPON-1110-WDONT Router due to storing of default username and password credentials in plaintext within the router's firmware/ database.
low complexity
syrotech CWE-312
4.6
2024-07-26 CVE-2024-41691 Cleartext Storage of Sensitive Information vulnerability in Syrotech Sy-Gpon-1110-Wdont Firmware 3.1.02231102
This vulnerability exists in SyroTech SY-GPON-1110-WDONT Router due to storing of FTP credentials in plaintext within the SquashFS-root filesystem associated with the router's firmware.
low complexity
syrotech CWE-312
4.6