Vulnerabilities > Wayos

DATE CVE VULNERABILITY TITLE RISK
2024-09-04 CVE-2024-44383 Command Injection vulnerability in Wayos Fbm-291W Firmware 19.09.11
WAYOS FBM-291W v19.09.11 is vulnerable to Command Execution via msp_info_htm.
low complexity
wayos CWE-77
6.8
2023-07-14 CVE-2023-37793 Classic Buffer Overflow vulnerability in Wayos Fbm-291W Firmware 19.09.11V
WAYOS FBM-291W 19.09.11V was discovered to contain a buffer overflow via the component /upgrade_filter.asp.
network
low complexity
wayos CWE-120
critical
9.8
2023-07-14 CVE-2023-37794 Command Injection vulnerability in Wayos Fbm-291W Firmware 19.09.11V
WAYOS FBM-291W 19.09.11V was discovered to contain a command injection vulnerability via the component /upgrade_filter.asp.
network
low complexity
wayos CWE-77
critical
9.8
2022-10-13 CVE-2022-41489 Cross-Site Request Forgery (CSRF) vulnerability in Wayos products
WAYOS LQ_09 22.03.17V was discovered to contain a Cross-Site Request Forgery (CSRF) which allows attackers to send crafted requests to the server from the affected device.
network
low complexity
wayos CWE-352
8.1