📦 H8951 4g Esp Firmware

by Hongdian

🔍 What is H8951 4g Esp Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-49255

CRITICAL CVSS 9.8 Jan 12, 2024

This vulnerability allows unauthenticated attackers to execute commands with administrative privileges on affected routers by exploiting shared session state. Attackers can create new admin accounts w...

CVE-2023-49262

CRITICAL CVSS 9.8 Jan 12, 2024

This vulnerability allows attackers to bypass authentication by overflowing the 'authentication' cookie field when an active user session exists. It affects web applications that use cookie-based auth...

CVE-2023-49254

HIGH CVSS 8.8 Jan 12, 2024

This vulnerability allows authenticated users to execute arbitrary commands as root by injecting payloads into the 'destination' field of network test tools. It affects systems running vulnerable vers...

CVE-2023-49257

HIGH CVSS 8.8 Jan 12, 2024

This vulnerability allows authenticated users to upload arbitrary CGI-compatible files through a certificate upload utility and execute them with root privileges. It affects systems running vulnerable...

CVE-2023-49259

HIGH CVSS 7.5 Jan 12, 2024

This vulnerability allows attackers to guess authentication cookies by exploiting weak cookie generation that relies on predictable factors like username, hardcoded secret, and system uptime. Systems ...

CVE-2023-49261

HIGH CVSS 7.5 Jan 12, 2024

This vulnerability exposes the 'tokenKey' value used for user authorization in the HTML source of login pages, allowing attackers to bypass authentication mechanisms. It affects systems using vulnerab...