📦 Mofi4500 4gxelte Firmware

by Mofinetwork

🔍 What is Mofi4500 4gxelte Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2020-15835

CRITICAL CVSS 9.8 Feb 1, 2021

This vulnerability allows attackers with a specific private key to authenticate as root on affected Mofi routers without knowing the actual root password. It affects Mofi Network MOFI4500-4GXeLTE devi...

CVE-2020-13858

CRITICAL CVSS 9.8 Feb 1, 2021

This vulnerability involves two undocumented administrator accounts (sftp and mofidev) with hardcoded, non-unique passwords in Mofi Network MOFI4500-4GXeLTE routers. Attackers can gain full administra...

CVE-2020-15833

CRITICAL CVSS 9.8 Feb 1, 2021

This vulnerability allows remote attackers to gain root access to affected Mofi Network routers via SSH using a hard-coded public key stored in read-only memory. The key cannot be removed or modified ...

CVE-2020-13860

HIGH CVSS 7.5 Feb 1, 2021

This vulnerability allows attackers to predict the one-time password for the undocumented 'mofidev' system account on affected Mofi routers. Attackers can gain unauthorized administrative access to th...

CVE-2020-13857

HIGH CVSS 7.5 Feb 1, 2021

This vulnerability allows unauthenticated attackers to reboot Mofi Network MOFI4500-4GXeLTE routers by sending a simple HTTP GET request to poof.cgi. This affects users of specific firmware versions, ...