VendorsJuplinkrx4-1500all versions
Vulnerabilities

Juplink RX4-1500

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2023-41030
Juplink RX4-1500 Hard-coded Credential Vulnerability
Published 2023-09-18 · Modified
9.8EPSS 0.007
CVE-2023-41028
Juplink RX4-1500 Stack-based Buffer Overflow Vulnerability
Published 2023-08-23 · Modified
9.0EPSS 0.009
CVE-2023-41029
Juplink RX4-1500 Command Injection Vulnerability
Published 2023-09-22 · Modified
8.8EPSS 0.027
CVE-2023-41031
Juplink RX4-1500 homemng.htm Command Injection Vulnerability
Published 2023-09-22 · Modified
8.8EPSS 0.022
CVE-2023-41027
Juplink RX4-1500 Credential Disclosure Vulnerability
Published 2023-09-22 · Modified
8.8EPSS 0.009
CVE-2020-8797
Juplink RX4-1500 v1.0.3 allows remote attackers to gain root access to the Linux subsystem via an unsanitized exec call (aka Command Line Injection), if the undocumented telnetd service is enabled and the attacker can authenticate as admin from the local network.
Published 2020-04-23 · Modified
6.9EPSS 0.009
CVE-2020-8798
httpd in Juplink RX4-1500 v1.0.3-v1.0.5 allows remote attackers to change or access router settings by connecting to the unauthenticated setup3.htm endpoint from the local network.
Published 2020-04-23 · Modified
5.5EPSS 0.004