← Back

Digisol

digisol

7 CVEs • 10 products

Products (10)

Click to collapse
Toggle

CVEs (7)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Digisol
1Dg Hr3400 Firmware
Nov 21, 2024
Jan 6, 2021
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Cross Site Scripting (XSS) vulnerability in Digisol DG-HR3400 can be exploited via the NTP server name in Time and date module and "Keyword" in URL Filter.
1Digisol
1Dg Hr 3300 Firmware
Nov 21, 2024
Jul 5, 2019
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Digisol Wireless Wifi Home Router HR-3300 allows XSS via the userid or password parameter to the admin login page.
1Digisol
1Dg Hr3400 Firmware
Nov 21, 2024
Jul 3, 2019
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
DIGISOL DG-HR3400 devices have XSS via a modified SSID when the apssid value is unchanged.
1Digisol
1Dg Br4000ng Firmware
Nov 21, 2024
Jun 24, 2018
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
DIGISOL DG-BR4000NG devices have a Buffer Overflow via a long Authorization HTTP header.
1Digisol
1Dg Br4000ng Firmware
Nov 21, 2024
Jun 24, 2018
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
DIGISOL DG-BR4000NG devices have XSS via the SSID (it is validated only on the client side).
1Digisol
1Dg Hr1400 Router Firmware
May 13, 2026
Mar 14, 2017
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
Privilege escalation vulnerability on the DIGISOL DG-HR1400 1.00.02 wireless router enables an attacker to escalate from user privilege to admin privilege just by modifying the Base64-encoded session cookie value.
1Digisol
1Dg Hr1400 Firmware
May 13, 2026
Feb 21, 2017
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Multiple cross-site request forgery (CSRF) vulnerabilities in the access portal on the DIGISOL DG-HR1400 Wireless Router with firmware 1.00.02 allow remote attackers to hijack the authentication of administrators for req...Show more
Multiple cross-site request forgery (CSRF) vulnerabilities in the access portal on the DIGISOL DG-HR1400 Wireless Router with firmware 1.00.02 allow remote attackers to hijack the authentication of administrators for requests that (1) change the SSID, (2) change the Wi-Fi password, or (3) possibly have unspecified other impact via crafted requests to form2WlanBasicSetup.cgi.Show less