📦 Waybox Pro Firmware

by Enelx

🔍 What is Waybox Pro Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-29120

CRITICAL CVSS 9.6 Nov 5, 2024

CVE-2023-29120 is a critical OS command injection vulnerability in Waybox Enel X web management applications that allows authenticated attackers to execute arbitrary commands with administrator privil...

CVE-2023-29125

CRITICAL CVSS 9.0 Nov 5, 2024

CVE-2023-29125 is a heap buffer overflow vulnerability in TCP port 7700 services that allows remote attackers to execute arbitrary code or cause denial of service by sending a specially crafted packet...

CVE-2023-29118

CRITICAL CVSS 9.6 Nov 5, 2024

This vulnerability allows unauthenticated attackers to execute arbitrary SQL commands on the Waybox Enel X web management application's internal database via the /admin/versions.php endpoint. This aff...

CVE-2023-29117

HIGH CVSS 8.8 Nov 5, 2024

CVE-2023-29117 is an authentication bypass vulnerability in Waybox Enel X web management API that allows attackers to gain administrator privileges without valid credentials. This affects Waybox syste...

CVE-2023-29116

MEDIUM CVSS 4.3 Nov 5, 2024

This vulnerability allows unauthenticated attackers to obtain sensitive information from Waybox Enel X web management applications, including OS version and service configuration details. It affects W...