← Back

Skybridge Mb A100 Firmware

skybridge_mb-a100_firmware

Vendor: Seiko Sol • 8 CVEs

CVEs (8)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Seiko Sol
2Skybridge Mb A100 Firmware
Skybridge Mb A110 Firmware
Jan 28, 2025
May 10, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Use of weak credentials exists in SkyBridge MB-A100/110 firmware Ver. 4.2.0 and earlier, which may allow a remote unauthenticated attacker to decrypt password for the WebUI of the product.
1Seiko Sol
2Skybridge Mb A100 Firmware
Skybridge Mb A110 Firmware
Jan 28, 2025
May 10, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Cleartext transmission of sensitive information exists in SkyBridge MB-A100/110 firmware Ver. 4.2.0 and earlier. If the telnet connection is enabled, a remote unauthenticated attacker may eavesdrop on or alter the admini...Show more
Cleartext transmission of sensitive information exists in SkyBridge MB-A100/110 firmware Ver. 4.2.0 and earlier. If the telnet connection is enabled, a remote unauthenticated attacker may eavesdrop on or alter the administrator's communication to the product.Show less
1Seiko Sol
2Skybridge Mb A100 Firmware
Skybridge Mb A110 Firmware
Jan 28, 2025
May 10, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Cleartext storage of sensitive information exists in SkyBridge MB-A100/110 firmware Ver. 4.2.0 and earlier, which may allow a remote authenticated attacker to obtain an APN credential for the product.
1Seiko Sol
2Skybridge Mb A100 Firmware
Skybridge Mb A110 Firmware
Jan 28, 2025
May 10, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Missing authentication for critical function exists in SkyBridge MB-A100/110 firmware Ver. 4.2.0 and earlier, which may allow a remote unauthenticated attacker to execute some critical functions without authentication, e...Show more
Missing authentication for critical function exists in SkyBridge MB-A100/110 firmware Ver. 4.2.0 and earlier, which may allow a remote unauthenticated attacker to execute some critical functions without authentication, e.g., rebooting the product.Show less
1Seiko Sol
2Skybridge Mb A100 Firmware
Skybridge Mb A110 Firmware
Jan 28, 2025
May 10, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Improper privilege management vulnerability in SkyBridge MB-A100/110 firmware Ver. 4.2.0 and earlier allows a remote authenticated attacker to alter a WebUI password of the product.
1Seiko Sol
2Skybridge Mb A100 Firmware
Skybridge Mb A110 Firmware
Nov 21, 2024
Aug 29, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Seiko SkyBridge MB-A100/A110 v4.2.0 and below implements a hard-coded passcode for the root account. Attackers are able to access the passcord via the file /etc/ciel.cfg.
1Seiko Sol
2Skybridge Mb A100 Firmware
Skybridge Mb A110 Firmware
Nov 21, 2024
Aug 29, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Seiko SkyBridge MB-A100/A110 v4.2.0 and below was discovered to contain an arbitrary file upload vulnerability via the restore backup function. This vulnerability allows attackers to execute arbitrary code via a crafted...Show more
Seiko SkyBridge MB-A100/A110 v4.2.0 and below was discovered to contain an arbitrary file upload vulnerability via the restore backup function. This vulnerability allows attackers to execute arbitrary code via a crafted html file.Show less
1Seiko Sol
2Skybridge Mb A100 Firmware
Skybridge Mb A110 Firmware
Nov 21, 2024
Aug 29, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Seiko SkyBridge MB-A100/A110 v4.2.0 and below was discovered to contain a command injection vulnerability via the ipAddress parameter at 07system08execute_ping_01.