Vulnerabilities > Technicolor > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-12-23 CVE-2018-20379 Cross-site Scripting vulnerability in Technicolor Dpc3928Sl Firmware D3928Slpsip13A010C3420R55105160428A
Technicolor DPC3928SL D3928SL-PSIP-13-A010-c3420r55105-160428a devices allow XSS via a Cross Protocol Injection attack with setSSID of 1.3.6.1.4.1.4413.2.2.2.1.18.1.2.1.1.3.10001.
network
high complexity
technicolor CWE-79
4.7
2018-09-06 CVE-2018-16310 Resource Exhaustion vulnerability in Technicolor Tg588V Firmware
Technicolor TG588V V2 devices allow remote attackers to cause a denial of service (networking outage) via a flood of random MAC addresses, as demonstrated by macof.
low complexity
technicolor CWE-400
6.5
2018-08-29 CVE-2018-15907 Resource Exhaustion vulnerability in Technicolor Tc8305C Firmware
Technicolor (formerly RCA) TC8305C devices allow remote attackers to cause a denial of service (networking outage) via a flood of random MAC addresses, as demonstrated by macof.
low complexity
technicolor CWE-400
6.5
2018-08-25 CVE-2018-15852 Resource Exhaustion vulnerability in Technicolor Tc7200.20 Firmware
Technicolor TC7200.20 devices allow remote attackers to cause a denial of service (networking outage) via a flood of random MAC addresses, as demonstrated by macof.
low complexity
technicolor CWE-400
6.5
2017-08-03 CVE-2017-11320 Cross-site Scripting vulnerability in Technicolor Tc7337 Firmware 08.89.17.20.00
Persistent XSS through the SSID of nearby Wi-Fi devices on Technicolor TC7337 routers 08.89.17.20.00 allows an attacker to cause DNS Poisoning and steal credentials from the router.
network
low complexity
technicolor CWE-79
6.1