VendorsEltexesp-200all versions
Vulnerabilities

Eltex ESP-200

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2018-15356
An authenticated attacker can execute arbitrary code using command ejection in Eltex ESP-200 firmware version 1.2.0.
Published 2018-08-17 · Modified
8.8EPSS 0.025
CVE-2018-15359
An authenticated attacker with low privileges can use insecure sudo configuration to expand attack surface in Eltex ESP-200 firmware version 1.2.0.
Published 2018-08-17 · Modified
8.8EPSS 0.016
CVE-2018-15358
An authenticated attacker with low privileges can activate high privileged user and use it to expand attack surface in Eltex ESP-200 firmware version 1.2.0.
Published 2018-08-17 · Modified
8.8EPSS 0.013
CVE-2018-15360
An attacker without authentication can login with default credentials for privileged users in Eltex ESP-200 firmware version 1.2.0.
Published 2018-08-17 · Modified
7.5EPSS 0.016
CVE-2018-15357
An authenticated attacker with low privileges can extract password hash information for all users in Eltex ESP-200 firmware version 1.2.0.
Published 2018-08-17 · Modified
6.5EPSS 0.011