CVEs (12)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Sealevel 1Seaconnect 370w Firmware Nov 21, 2024 Apr 14, 2022 N/A· v4 5.9 MEDIUM· v3 7.1 HIGH· v2 An out-of-bounds write vulnerability exists in the OTA update task functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted MQTT payload can lead to denial of service. An attacker can perform...Show more |
1Sealevel 1Seaconnect 370w Firmware Nov 21, 2024 Feb 4, 2022 N/A· v4 5.9 MEDIUM· v3 4.3 MEDIUM· v2 An out-of-bounds write vulnerability exists in the URL_decode functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted MQTT payload can lead to an out-of-bounds write. An attacker can perform...Show more |
1Sealevel 1Seaconnect 370w Firmware Nov 21, 2024 Feb 4, 2022 N/A· v4 8.1 HIGH· v3 6.8 MEDIUM· v2 An out-of-bounds write vulnerability exists in the HandleSeaCloudMessage functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. The HandleIncomingSeaCloudMessage function uses at [3] the json_object_get_string...Show more |
1Sealevel 1Seaconnect 370w Firmware Nov 21, 2024 Feb 4, 2022 N/A· v4 8.1 HIGH· v3 6.8 MEDIUM· v2 An out-of-bounds write vulnerability exists in the HandleSeaCloudMessage functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. The HandleIncomingSeaCloudMessage function uses at [4] the json_object_get_string...Show more |
1Sealevel 1Seaconnect 370w Firmware Nov 21, 2024 Feb 4, 2022 N/A· v4 8.3 HIGH· v3 6.8 MEDIUM· v2 A file write vulnerability exists in the OTA update task functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted MQTT payload can lead to arbitrary file overwrite. An attacker can perform a m...Show more |
1Sealevel 1Seaconnect 370w Firmware Nov 21, 2024 Feb 4, 2022 N/A· v4 9.3 CRITICAL· v3 6.4 MEDIUM· v2 A denial of service vulnerability exists in the SeaMax remote configuration functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. Specially-crafted network packets can lead to denial of service. An attacker ca...Show more |
1Sealevel 1Seaconnect 370w Firmware Nov 21, 2024 Feb 4, 2022 N/A· v4 7.4 HIGH· v3 7.1 HIGH· v2 A denial of service vulnerability exists in the Modbus configuration functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. Specially-crafted network packets can lead to denial of service. An attacker can send...Show more |
1Sealevel 1Seaconnect 370w Firmware Nov 21, 2024 Feb 4, 2022 N/A· v4 5.9 MEDIUM· v3 4.3 MEDIUM· v2 An information disclosure vulnerability exists in the Web Server functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted man-in-the-middle attack can lead to a disclosure of sensitive informa...Show more |
1Sealevel 1Seaconnect 370w Firmware Nov 21, 2024 Feb 4, 2022 N/A· v4 8.1 HIGH· v3 6.8 MEDIUM· v2 A heap-based buffer overflow vulnerability exists in the OTA Update u-download functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A series of specially-crafted MQTT payloads can lead to remote code executio...Show more |
1Sealevel 1Seaconnect 370w Firmware Nov 21, 2024 Feb 4, 2022 N/A· v4 10.0 CRITICAL· v3 7.5 HIGH· v2 A stack-based buffer overflow vulnerability exists in the NBNS functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted network packet can lead to remote code execution. An attacker can send a...Show more |
1Sealevel 1Seaconnect 370w Firmware Nov 21, 2024 Feb 4, 2022 N/A· v4 10.0 CRITICAL· v3 7.5 HIGH· v2 A stack-based buffer overflow vulnerability exists in both the LLMNR functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted network packet can lead to remote code execution. An attacker can...Show more |
1Sealevel 1Seaconnect 370w Firmware Nov 21, 2024 Feb 4, 2022 N/A· v4 8.1 HIGH· v3 6.8 MEDIUM· v2 A misconfiguration exists in the MQTTS functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. This misconfiguration significantly simplifies a man-in-the-middle attack, which directly leads to control of device...Show more |