Vulnerabilities > Technicolor > Medium

DATE CVE VULNERABILITY TITLE RISK
2014-12-05 CVE-2014-9143 Code vulnerability in Technicolor Td5130 Router Firmware 2.05.C29Gv
Open redirect vulnerability in Technicolor Router TD5130 with firmware 2.05.C29GV allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the failrefer parameter.
4.3
2014-12-05 CVE-2014-9142 Cross-Site Scripting vulnerability in Technicolor Td5130 Router Firmware 2.05.C29Gv
Cross-site scripting (XSS) vulnerability in Technicolor Router TD5130 with firmware 2.05.C29GV allows remote attackers to inject arbitrary web script or HTML via the failrefer parameter.
4.3
2014-01-08 CVE-2014-0621 Cross-Site Request Forgery (CSRF) vulnerability in Technicolor Tc7200 and Tc7200 Firmware
Multiple cross-site request forgery (CSRF) vulnerabilities in Technicolor (formerly Thomson) TC7200 STD6.01.12 allow remote attackers to hijack the authentication of administrators for requests that (1) perform a factory reset via a request to goform/system/factory, (2) disable advanced options via a request to goform/advanced/options, (3) remove ip-filters via the IpFilterAddressDelete1 parameter to goform/advanced/ip-filters, or (4) remove firewall settings via the cbFirewall parameter to goform/advanced/firewall.
6.8
2014-01-08 CVE-2014-0620 Cross-Site Scripting vulnerability in Technicolor Tc7200 and Tc7200 Firmware
Multiple cross-site scripting (XSS) vulnerabilities in Technicolor (formerly Thomson) TC7200 STD6.01.12 allow remote attackers to inject arbitrary web script or HTML via the (1) ADDNewDomain parameter to parental/website-filters.asp or (2) VmTracerouteHost parameter to goform/status/diagnostics-route.
4.3