ZeroHour

Vulnerabilities

89 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2025-4043
An admin user can gain unauthorized write access to the /etc/rc.local file on the device, which is executed on a system boot.

An admin user can gain unauthorized write access to the /etc/rc.local file on the device, which is executed on a system boot.

NVD description · AI analysis pending
6.1<1%
  • milesight ug65-868m-ea firmware
CVE-2024-27776
MileSight DeviceHub - CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') may allow Unauthenticated RCE

MileSight DeviceHub - CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') may allow Unauthenticated RCE

NVD description · AI analysis pending
9.8
group max
<1%
  • milesight devicehub
CVE-2023-47166
A firmware update vulnerability exists in the luci2-io file-import functionality of Milesight UR32L v32.3.0.7-r2.

A firmware update vulnerability exists in the luci2-io file-import functionality of Milesight UR32L v32.3.0.7-r2. A specially crafted network request can lead to arbitrary firmware update. An attacker can send a network request to trigger this vulnerability.

NVD description · AI analysis pending
8.8<1%
  • milesight ur32l firmware
CVE-2023-43260
Milesight UR5X, UR32L, UR32, UR35, UR41 before v35.3.0.7 was discovered to contain a cross-site scripting (XSS) vulnerability via the admin panel.

Milesight UR5X, UR32L, UR32, UR35, UR41 before v35.3.0.7 was discovered to contain a cross-site scripting (XSS) vulnerability via the admin panel.

NVD description · AI analysis pending
6.1<1% PoC
  • milesight ur51 firmware
  • milesight ur52 firmware
  • milesight ur55 firmware
  • +1 more
CVE-2023-43261
An information disclosure in Milesight UR5X, UR32L, UR32, UR35, UR41 before v35.3.0.7 allows attackers to access sensitive router components.

An information disclosure in Milesight UR5X, UR32L, UR32, UR35, UR41 before v35.3.0.7 allows attackers to access sensitive router components.

NVD description · AI analysis pending
7.560% PoC
  • milesight ur5x firmware
  • milesight ur32l firmware
  • milesight ur32 firmware
  • +1 more
CVE-2023-25583
Two OS command injection vulnerabilities exist in the zebra vlan_name functionality of Milesight UR32L v32.3.0.5.

Two OS command injection vulnerabilities exist in the zebra vlan_name functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is in the code branch that manages a new vlan configuration.

NVD description · AI analysis pending
7.24% PoC
  • milesight ur32l firmware