← Back

N Tron 702 W Firmware

n-tron_702-w_firmware

Vendor: Redlion • 5 CVEs

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Redlion
2N Tron 702 W Firmware
N Tron 702m12 W Firmware
Nov 21, 2024
Sep 1, 2020
N/A· v4
9.0 CRITICAL· v3
3.5 LOW· v2
The affected product is vulnerable to reflected cross-site scripting, which may allow an attacker to remotely execute arbitrary code and perform actions in the context of an attacked user on the N-Tron 702-W / 702M12-W (...Show more
The affected product is vulnerable to reflected cross-site scripting, which may allow an attacker to remotely execute arbitrary code and perform actions in the context of an attacked user on the N-Tron 702-W / 702M12-W (all versions).Show less
1Redlion
2N Tron 702 W Firmware
N Tron 702m12 W Firmware
Nov 21, 2024
Sep 1, 2020
N/A· v4
8.8 HIGH· v3
9.3 HIGH· v2
The affected product is vulnerable to cross-site request forgery, which may allow an attacker to modify different configurations of a device by luring an authenticated user to click on a crafted link on the N-Tron 702-W...Show more
The affected product is vulnerable to cross-site request forgery, which may allow an attacker to modify different configurations of a device by luring an authenticated user to click on a crafted link on the N-Tron 702-W / 702M12-W (all versions).Show less
1Redlion
2N Tron 702 W Firmware
N Tron 702m12 W Firmware
Nov 21, 2024
Sep 1, 2020
N/A· v4
9.0 CRITICAL· v3
3.5 LOW· v2
The affected product is vulnerable to stored cross-site scripting, which may allow an attacker to remotely execute arbitrary code to gain access to sensitive data on the N-Tron 702-W / 702M12-W (all versions).
1Redlion
2N Tron 702 W Firmware
N Tron 702m12 W Firmware
Nov 21, 2024
Sep 1, 2020
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
The affected product is vulnerable due to an undocumented interface found on the device, which may allow an attacker to execute commands as root on the device on the N-Tron 702-W / 702M12-W (all versions).
5Busybox
CanonicalDebian+2 more
6Busybox
Debian LinuxEsxi+3 more
May 13, 2026
Nov 20, 2017
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and results in executing any...Show more
In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and results in executing any escape sequence in the terminal. This could potentially result in code execution, arbitrary file writes, or other attacks.Show less