VendorsSilex Technologysd-330ac_firmwareany version
Vulnerabilities

Silex Technology sd-330ac Firmware any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

11CVEs
CVE-2026-32956
SD-330AC and AMC Manager provided by silex technology, Inc. contain a heap-based buffer overflow vulnerability in processing the redirect URLs. Arbitrary code may be executed on the device.
Published 2026-04-20 · Analyzed
9.8EPSS 0.007
CVE-2026-32955
SD-330AC and AMC Manager provided by silex technology, Inc. contain a stack-based buffer overflow vulnerability in processing the redirect URLs. Arbitrary code may be executed on the device.
Published 2026-04-20 · Analyzed
8.8EPSS 0.007
CVE-2026-32965
Initialization of a resource with an insecure default vulnerability exists in SD-330AC and AMC Manager provided by silex technology, Inc. When the affected device is connected to the network with the initial (factory-default) configuration, the device can be configured with the null string password.
Published 2026-04-20 · Analyzed
8.7EPSS 0.005
CVE-2026-32959
SD-330AC and AMC Manager provided by silex technology, Inc. contain an issue with a use of a broken or risky cryptographic algorithm. Information in the traffic may be retrieved via man-in-the-middle attack.
Published 2026-04-20 · Analyzed
8.2EPSS 0.003
CVE-2026-32960
SD-330AC and AMC Manager provided by silex technology, Inc. contain an issue with a sensitive information in resource not removed before reuse. An attacker may login to the device without knowing the password by sending a crafted packet.
Published 2026-04-20 · Analyzed
7.1EPSS 0.005
CVE-2026-32961
SD-330AC and AMC Manager provided by silex technology, Inc. contain a heap-based buffer overflow vulnerability in packet data processing of sx_smpd. Processing a crafted packet may cause a temporary denial-of-service (DoS) condition.
Published 2026-04-20 · Analyzed
6.9EPSS 0.006
CVE-2026-32964
SD-330AC and AMC Manager provided by silex technology, Inc. contain an improper neutralization of CRLF sequences ('CRLF Injection') vulnerability. Processing some crafted configuration data may lead to arbitrary entries injected to the system configuration.
Published 2026-04-20 · Analyzed
6.9EPSS 0.005
CVE-2026-32957
SD-330AC and AMC Manager provided by silex technology, Inc. contain a missing authentication for critical function issue on firmware maintenance. Arbitrary file may be uploaded on the device without authentication.
Published 2026-04-20 · Analyzed
6.9EPSS 0.005
CVE-2026-32962
SD-330AC and AMC Manager provided by silex technology, Inc. contain a missing authentication for critical function issue. The device configuration may be altered without authentication.
Published 2026-04-20 · Analyzed
6.9EPSS 0.005
CVE-2026-32958
SD-330AC and AMC Manager provided by silex technology, Inc. use a hard-coded cryptographic key. An administrative user may be directed to apply a fake firmware update.
Published 2026-04-20 · Analyzed
6.9EPSS 0.004
CVE-2026-32963
SD-330AC and AMC Manager provided by silex technology, Inc. contain a reflected cross-site scripting vulnerability. When a user logs in to the affected device and access some crafted web page, arbitrary script may be executed on the user's browser.
Published 2026-04-20 · Analyzed
6.1EPSS 0.003