ZeroHour

Vulnerabilities

5 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2020-21883
+1 in the same advisory: …21884
Unibox U-50 2.4 and UniBox Enterprise Series 2.4 and UniBox Campus Series 2.4 contain a OS command injection vulnerability in /tools/ping, which can leads to co

Unibox U-50 2.4 and UniBox Enterprise Series 2.4 and UniBox Campus Series 2.4 contain a OS command injection vulnerability in /tools/ping, which can leads to complete device takeover.

NVD description · AI analysis pending
8.84% PoC
  • indionetworks unibox u50 firmware
  • indionetworks unibox u500 firmware
  • indionetworks unibox u1000 firmware
  • +1 more
CVE-2019-3497
+2 in the same advisory: …3496 …3495
An issue was discovered on Wifi-soft UniBox controller 0.x through 2.x devices.

An issue was discovered on Wifi-soft UniBox controller 0.x through 2.x devices. The tools/ping Ping feature of the Diagnostic Tools component is vulnerable to Remote Command Execution, allowing an attacker to execute arbitrary system commands on the server with root user privileges. Authentication for accessing this component can be bypassed by using Hard coded credentials.

NVD description · AI analysis pending
8.89% PoC ×3
  • indionetworks unibox firmware