← Back

Intelbras

intelbras

50 CVEs • 48 products

Products (48)

Click to collapse
Toggle
Incontrol Web
incontrol_web
Incontrol
incontrol
Icip 30
icip_30
Wrn 240
wrn_240
Wrn 150
wrn_150
Tip200
tip200
Tip200lite
tip200lite
Ncloud 300
ncloud_300
Win 240
win_240
Nplug
nplug
Iwr 3000n
iwr_3000n
Iwr 1000n
iwr_1000n
Cip 92200
cip_92200
Tip300
tip300
Win 300
win_300
Wrn 342
wrn_342
Rf 301k
rf_301k
Ata 200
ata_200
Sg 2404 Poe
sg_2404_poe
Sg 2404 Mr
sg_2404_mr
Rx 1500
rx_1500
Rx 3000
rx_3000
Tip 635g
tip_635g

CVEs (50)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Intelbras
1Iwr 3000n Firmware
Jun 17, 2026
Apr 22, 2019
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
An issue was discovered on Intelbras IWR 3000N 1.5.0 devices. A malformed login request allows remote attackers to cause a denial of service (reboot), as demonstrated by JSON misparsing of the \""} string to v1/system/lo...Show more
An issue was discovered on Intelbras IWR 3000N 1.5.0 devices. A malformed login request allows remote attackers to cause a denial of service (reboot), as demonstrated by JSON misparsing of the \""} string to v1/system/login.Show less
1Intelbras
1Iwr 3000n Firmware
Jun 17, 2026
Apr 22, 2019
N/A· v4
8.8 HIGH· v3
4.3 MEDIUM· v2
An issue was discovered on Intelbras IWR 3000N 1.5.0 devices. When the administrator password is changed from a certain client IP address, administrative authorization remains available to any client at that IP address,...Show more
An issue was discovered on Intelbras IWR 3000N 1.5.0 devices. When the administrator password is changed from a certain client IP address, administrative authorization remains available to any client at that IP address, leading to complete control of the router.Show less
1Intelbras
1Nplug Firmware
Nov 21, 2024
Oct 10, 2018
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Intelbras NPLUG 1.0.0.14 devices have XSS via a crafted SSID that is received via a network broadcast.
1Intelbras
1Nplug Firmware
Nov 21, 2024
Oct 10, 2018
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Intelbras NPLUG 1.0.0.14 wireless repeater devices have no CSRF token protection in the web interface, allowing attackers to perform actions such as changing the wireless SSID, rebooting the device, editing access contro...Show more
Intelbras NPLUG 1.0.0.14 wireless repeater devices have no CSRF token protection in the web interface, allowing attackers to perform actions such as changing the wireless SSID, rebooting the device, editing access control lists, or activating remote access.Show less
1Intelbras
1Nplug Firmware
Nov 21, 2024
Oct 10, 2018
N/A· v4
8.1 HIGH· v3
9.3 HIGH· v2
Intelbras NPLUG 1.0.0.14 wireless repeater devices have a critical vulnerability that allows an attacker to authenticate in the web interface just by using "admin:" as the name of a cookie.
1Intelbras
1Win 240 Firmware
Nov 21, 2024
Aug 15, 2018
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
A Cross-site scripting (XSS) vulnerability was discovered on Intelbras Win 240 V1.1.0 devices. An attacker can change the Admin Password without a Login.
1Intelbras
1Ncloud 300 Firmware
Nov 21, 2024
May 15, 2018
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
An issue was discovered on Intelbras NCLOUD 300 1.0 devices. /cgi-bin/ExportSettings.sh, /goform/updateWPS, /goform/RebootSystem, and /goform/vpnBasicSettings do not require authentication. For example, when an HTTP POST...Show more
An issue was discovered on Intelbras NCLOUD 300 1.0 devices. /cgi-bin/ExportSettings.sh, /goform/updateWPS, /goform/RebootSystem, and /goform/vpnBasicSettings do not require authentication. For example, when an HTTP POST request is made to /cgi-bin/ExportSettings.sh, the username, password, and other details are retrieved.Show less
1Intelbras
2Tip200 Firmware
Tip200lite Firmware
Jun 17, 2026
Mar 25, 2018
N/A· v4
7.2 HIGH· v3
4.0 MEDIUM· v2
Intelbras TELEFONE IP TIP200/200 LITE 60.0.75.29 devices allow remote authenticated admins to read arbitrary files via the /cgi-bin/cgiServer.exx page parameter, aka absolute path traversal. In some cases, authentication...Show more
Intelbras TELEFONE IP TIP200/200 LITE 60.0.75.29 devices allow remote authenticated admins to read arbitrary files via the /cgi-bin/cgiServer.exx page parameter, aka absolute path traversal. In some cases, authentication can be achieved via the admin account with its default admin password.Show less
1Intelbras
1Wrn 150 Firmware
May 13, 2026
Sep 30, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Intelbras WRN 150 devices allow remote attackers to read the configuration file, and consequently bypass authentication, via a direct request for cgi-bin/DownloadCfg/RouterCfm.cfg containing an admin:language=pt cookie.
1Intelbras
1Wrn 240 Firmware
May 13, 2026
Sep 7, 2017
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
XSS (persistent) on the Intelbras Wireless N 150Mbps router with firmware WRN 240 allows attackers to steal wireless credentials without being connected to the network, related to userRpm/popupSiteSurveyRpm.htm and userR...Show more
XSS (persistent) on the Intelbras Wireless N 150Mbps router with firmware WRN 240 allows attackers to steal wireless credentials without being connected to the network, related to userRpm/popupSiteSurveyRpm.htm and userRpm/WlanSecurityRpm.htm. The attack vector is a crafted ESSID, as demonstrated by an "airbase-ng -e" command.Show less