← Back

Centro Grande Firmware

centro_grande_firmware

Vendor: Swisscom • 4 CVEs

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Swisscom
2Centro Business
Centro Grande Firmware
Nov 21, 2024
Mar 16, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Missing output sanitation in Swisscom Centro Grande Centro Grande before 6.16.12, Centro Business 1.0 (ADB) before 7.10.18, and Centro Business 2.0 before 8.02.04 allows a remote attacker to perform DNS spoofing against...Show more
Missing output sanitation in Swisscom Centro Grande Centro Grande before 6.16.12, Centro Business 1.0 (ADB) before 7.10.18, and Centro Business 2.0 before 8.02.04 allows a remote attacker to perform DNS spoofing against the web interface via crafted hostnames in DHCP requests.Show less
1Swisscom
1Centro Grande Firmware
Nov 21, 2024
Mar 16, 2020
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
Missing hostname validation in Swisscom Centro Grande before 6.16.12 allows a remote attacker to inject its local IP address as a domain entry in the DNS service of the router via crafted hostnames in DHCP requests, caus...Show more
Missing hostname validation in Swisscom Centro Grande before 6.16.12 allows a remote attacker to inject its local IP address as a domain entry in the DNS service of the router via crafted hostnames in DHCP requests, causing XSS.Show less
1Swisscom
1Centro Grande Firmware
Nov 21, 2024
Mar 16, 2020
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Incorrect input sanitation in text-oriented user interfaces (telnet, ssh) in Swisscom Centro Grande before 6.16.12 allows remote authenticated users to execute arbitrary commands via command injection.
1Swisscom
1Centro Grande Firmware
May 6, 2026
May 20, 2015
N/A· v4
N/A· v3
7.5 HIGH· v2
The certificate verification functions in the HNDS service in Swisscom Centro Grande (ADB) DSL routers with firmware before 6.14.00 allows remote attackers to access the management functions via unknown vectors.