VendorsLannerinciac-ast2500a_firmware1.10.0
Vulnerabilities

Lannerinc IAC-AST2500A FIRMWARE 1.10.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

12CVEs
CVE-2021-26727
spx_restservice SubNet_handler_func Multiple Command Injections and Stack-Based Buffer Overflows
Published 2022-10-24 · Modified
10.0EPSS 0.023
CVE-2021-26728
spx_restservice KillDupUsr_func Command Injection and Stack-Based Buffer Overflow
Published 2022-10-24 · Modified
10.0EPSS 0.023
CVE-2021-26729
spx_restservice Login_handler_func Command Injection and Multiple Stack-Based Buffer Overflows
Published 2022-10-24 · Modified
10.0EPSS 0.023
CVE-2021-26730
spx_restservice Login_handler_func Subfunction Stack-Based Buffer Overflow
Published 2022-10-24 · Modified
10.0EPSS 0.010
CVE-2021-26731
spx_restservice modifyUserb_func Command Injection and Multiple Stack-Based Buffer Overflows
Published 2022-10-24 · Modified
9.8EPSS 0.024
CVE-2021-46279
Session Fixation and Insufficient Session Expiration
Published 2022-10-24 · Modified
8.8EPSS 0.004
CVE-2021-26733
spx_restservice FirstReset_handler_func Broken Access Control
Published 2022-10-24 · Modified
7.5EPSS 0.007
CVE-2021-44467
spx_restservice KillDupUsr_func Broken Access Control
Published 2022-10-24 · Modified
7.5EPSS 0.007
CVE-2021-26732
spx_restservice First_network_func Broken Access Control
Published 2022-10-24 · Modified
6.5EPSS 0.005
CVE-2021-44776
spx_restservice SubNet_handler_func Broken Access Control
Published 2022-10-24 · Modified
6.5EPSS 0.005
CVE-2021-44769
TLS Certificate Generation Function Improper Input Validation
Published 2022-10-24 · Modified
6.5EPSS 0.004
CVE-2021-45925
Username Enumeration
Published 2022-10-24 · Modified
5.3EPSS 0.005