← Back

Kami7b Firmware

kami7b_firmware

Vendor: Amino • 5 CVEs

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Amino
6Ak45x Firmware
Ak5xx FirmwareAk65x Firmware+3 more
Nov 21, 2024
Dec 30, 2020
N/A· v4
8.1 HIGH· v3
9.3 HIGH· v2
Command Injection in the CPE WAN Management Protocol (CWMP) registration in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows man-in-the-middle attackers...Show more
Command Injection in the CPE WAN Management Protocol (CWMP) registration in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows man-in-the-middle attackers to execute arbitrary commands with root level privileges.Show less
1Amino
6Ak45x Firmware
Ak5xx FirmwareAk65x Firmware+3 more
Nov 21, 2024
Dec 30, 2020
N/A· v4
9.9 CRITICAL· v3
9.0 HIGH· v2
Command Injection in EntoneWebEngine in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows authenticated remote attackers to execute arbitrary commands wit...Show more
Command Injection in EntoneWebEngine in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows authenticated remote attackers to execute arbitrary commands with root user privileges.Show less
1Amino
6Ak45x Firmware
Ak5xx FirmwareAk65x Firmware+3 more
Nov 21, 2024
Dec 30, 2020
N/A· v4
4.4 MEDIUM· v3
3.6 LOW· v2
Use of a Hard-coded Password in VNCserver in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows local attackers to view and interact with the video output...Show more
Use of a Hard-coded Password in VNCserver in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows local attackers to view and interact with the video output of the device.Show less
1Amino
6Ak45x Firmware
Ak5xx FirmwareAk65x Firmware+3 more
Nov 21, 2024
Dec 29, 2020
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Because of hard-coded SSH keys for the root user in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series, Kami7B, an attacker may remotely log in through SSH.
1Amino
6Ak45x Firmware
Ak5xx FirmwareAk65x Firmware+3 more
Nov 21, 2024
Dec 29, 2020
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Use of Hard-coded Credentials in EntoneWebEngine in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows remote attackers to retrieve and modify the device s...Show more
Use of Hard-coded Credentials in EntoneWebEngine in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows remote attackers to retrieve and modify the device settings.Show less