Iptime
iptime
13 CVEs • 352 products
Products (352)
Click to collapseToggle
Products (352)
Click to collapse
CVEs (13)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Iptime 4Ax2004m Firmware Ax3000q FirmwareAx6000m Firmware+1 moreJun 17, 2026 Feb 27, 2026 6.0 MEDIUM· v4 7.5 HIGH· v3 N/A· v2 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in EFM-Networks, Inc. IpTIME T5008, EFM-Networks, Inc. IpTIME AX2004M, EFM-Networks, Inc. IpTIME AX3000Q, EFM-Networks, Inc. IpTIME AX6000M allows...Show more |
A vulnerability was identified in EFM ipTIME A8004T 14.18.2. Affected by this vulnerability is the function commit_vpncli_file_upload of the file /cgi/timepro.cgi of the component VPN Service. Such manipulation leads to...Show more |
1Iptime 1A8004t Firmware Jun 17, 2026 Feb 2, 2026 6.6 MEDIUM· v4 6.6 MEDIUM· v3 6.8 MEDIUM· v2 A vulnerability was determined in EFM ipTIME A8004T 14.18.2. Affected is the function httpcon_check_session_url of the file /sess-bin/d.cgi of the component Debug Interface. This manipulation of the argument cmd causes b...Show more |
1Iptime 1A8004t Firmware Jun 17, 2026 Feb 2, 2026 5.5 MEDIUM· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A vulnerability was found in EFM ipTIME A8004T 14.18.2. This impacts the function httpcon_check_session_url of the file /cgi/timepro.cgi of the component Hidden Hiddenloginsetup Interface. The manipulation results in imp...Show more |
1Iptime 163A1004 Firmware A1004ns FirmwareA1004v Firmware+160 moreJun 17, 2026 Jan 20, 2026 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A command injection vulnerability exists in the upnp_relay() function in multiple ipTIME router models because the controlURL value used to pass port-forwarding information to an upper router is passed to system() withou...Show more |
A buffer overflow vulnerability exists in the upload.cgi module of the iptime NAS firmware v1.5.04. The vulnerability arises due to the unsafe use of the strcpy function to copy attacker-controlled data from the CONTENT_...Show more |
1Iptime 3Nas1dual Firmware Nas2dual FirmwareNas4dual FirmwareJun 17, 2026 Oct 17, 2022 N/A· v4 8.8 HIGH· v3 N/A· v2 This vulnerability occurs in user accounts creation and deleteion related pages of IPTIME NAS products. The vulnerability could be exploited by a lack of validation when a POST request is made to this page. An attacker c...Show more |
1Iptime 3Nas1dual Firmware Nas2dual FirmwareNas4dual FirmwareJun 17, 2026 Aug 17, 2022 N/A· v4 8.8 HIGH· v3 N/A· v2 This vulnerability occured by sending a malicious POST request to a specific page while logged in random user from some family of IPTIME NAS. Remote attackers can steal root privileges by changing the password of the roo...Show more |
1Iptime 9Nas I Firmware Nas Ii FirmwareNas Iie Firmware+6 moreJun 17, 2026 Mar 25, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An improper authentication vulnerability leading to information leakage was discovered in iptime NAS2dual. Remote attackers are able to steal important information in the server by exploiting vulnerabilities such as insu...Show more |
This issue was discovered when the ipTIME C200 IP Camera was synchronized with the ipTIME NAS. It is necessary to extract value for ipTIME IP camera because the ipTIME NAS send ans setCookie('[COOKIE]') . The value is tr...Show more |
ius_get.cgi in IpTime C200 camera allows remote code execution. A remote attacker may send a crafted parameters to the exposed vulnerable web service interface which invokes the arbitrary shell command. |
1Iptime 9Nas I Firmware Nas Ii FirmwareNas Iie Firmware+6 moreJun 17, 2026 Feb 23, 2021 N/A· v4 8.0 HIGH· v3 5.2 MEDIUM· v2 The ipTIME NAS product allows an arbitrary file upload vulnerability in the Manage Bulletins/Upload feature, which can be leveraged to gain remote code execution. This issue affects: pTIME NAS 1.4.36. |
The EFM ipTIME C200 IP Camera is affected by a Command Injection vulnerability in /login.cgi?logout=1 script. To exploit this vulnerability, an attacker can send a GET request that executes arbitrary OS commands via cook...Show more |