Total
3 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2017-11350 | 1 Axesstel | 2 Mu553s, Mu553s Firmware | 2017-09-21 | 6.8 MEDIUM | 8.8 HIGH |
Cross-Site Request Forgery (CSRF) exists in cgi-bin/ConfigSet on Axesstel MU553S MU55XS-V1.14 devices. | |||||
CVE-2017-11351 | 1 Axesstel | 2 Mu553s, Mu553s Firmware | 2017-09-21 | 10.0 HIGH | 9.8 CRITICAL |
Axesstel MU553S MU55XS-V1.14 devices have a default password of admin for the admin account. | |||||
CVE-2017-13724 | 1 Axesstel | 2 Mu553s, Mu553s Firmware | 2017-09-21 | 3.5 LOW | 5.4 MEDIUM |
On the Axesstel MU553S MU55XS-V1.14, there is a Stored Cross Site Scripting vulnerability in the APN parameter under the "Basic Settings" page. |