← Back

Motorola

motorola

91 CVEs • 105 products

Products (105)

Click to collapse
Toggle
Cx2 Firmware
cx2_firmware
M2 Firmware
m2_firmware
C1 Firmware
c1_firmware
Cx2l Firmware
cx2l_firmware
Surfboard
surfboard
Pebl U6
pebl_u6
V600
v600
Timbuktu
timbuktu
Cpei300
cpei300
Android
android
Defy Xt
defy_xt
Q14 Firmware
q14_firmware
Wr850g
wr850g
E398
e398
Motorazr
motorazr
Netoctopus
netoctopus
Razr
razr
Timbuktu Pro
timbuktu_pro
Atrix Hd
atrix_hd
Razr Hd
razr_hd
Razr M
razr_m
T008 Firmware
t008_firmware
T100 Firmware
t100_firmware
T101 Firmware
t101_firmware
T102 Firmware
t102_firmware
T103 Firmware
t103_firmware
T200 Firmware
t200_firmware
T201 Firmware
t201_firmware
T204 Firmware
t204_firmware
T205 Firmware
t205_firmware
T290 Firmware
t290_firmware
Device Help
device_help
Ready For
ready_for
Mr2600
mr2600
Mx011anm
mx011anm
Mbp853
mbp853
Sbg901
sbg901
Sbg941
sbg941
Svg1202
svg1202
M2
m2
C1
c1
Cx2
cx2
Cx2l Mwr04l
cx2l_mwr04l
C1 Mwr03
c1_mwr03
Motorola
motorola
Mh702x
mh702x
Mm1000
mm1000
T008
t008
T100
t100
T101
t101
T102
t102
T103
t103
T200
t200
T201
t201
T204
t204
T205
t205
T290
t290
Ace1000
ace1000
Moto E20
moto_e20
Cx2l
cx2l

CVEs (91)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Motorola
1Mbts Base Radio Firmware
Jun 17, 2026
Aug 29, 2023
N/A· v4
8.4 HIGH· v3
N/A· v2
Motorola MBTS Base Radio accepts hard-coded backdoor password. The Motorola MBTS Base Radio Man Machine Interface (MMI), allowing for service technicians to diagnose and configure the device, accepts a hard-coded backdoo...Show more
Motorola MBTS Base Radio accepts hard-coded backdoor password. The Motorola MBTS Base Radio Man Machine Interface (MMI), allowing for service technicians to diagnose and configure the device, accepts a hard-coded backdoor password that cannot be changed or disabled.Show less
1Motorola
1Mbts Site Controller Firmware
Jun 17, 2026
Aug 29, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Motorola MBTS Site Controller accepts hard-coded backdoor password. The Motorola MBTS Site Controller Man Machine Interface (MMI), allowing for service technicians to diagnose and configure the device, accepts a hard-cod...Show more
Motorola MBTS Site Controller accepts hard-coded backdoor password. The Motorola MBTS Site Controller Man Machine Interface (MMI), allowing for service technicians to diagnose and configure the device, accepts a hard-coded backdoor password that cannot be changed or disabled.Show less
1Motorola
1Cx2l Firmware
Jun 17, 2026
May 11, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the tomography_ping_number parameter.
1Motorola
1Cx2l Firmware
Jun 17, 2026
May 11, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the smartqos_priority_devices parameter.
1Motorola
1Cx2l Firmware
Jun 17, 2026
May 11, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the system_time_timezone parameter.
1Motorola
1Cx2l Firmware
Jun 17, 2026
May 11, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the staticroute_list parameter.
1Motorola
1Mr2600 Firmware
Jun 17, 2026
Jan 30, 2023
N/A· v4
6.7 MEDIUM· v3
N/A· v2
An improper input sanitization vulnerability in the Motorola MR2600 router could allow a local user with elevated permissions to execute arbitrary code.
1Motorola
1Moto E20 Firmware
Jun 17, 2026
Dec 14, 2022
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper access control of bootloader function was discovered in Motorola Mobility Motorola e20 prior to version RONS31.267-38-8 allows attacker with local access to read partition or RAM data.
1Motorola
2Ace Ip Gateway (4600) Firmware
Moscad Ip Gateway Firmware
Jun 17, 2026
Jul 26, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
The Motorola MOSCAD and ACE line of RTUs through 2022-05-02 omit an authentication requirement. They feature IP Gateway modules which allow for interfacing between Motorola Data Link Communication (MDLC) networks (potent...Show more
The Motorola MOSCAD and ACE line of RTUs through 2022-05-02 omit an authentication requirement. They feature IP Gateway modules which allow for interfacing between Motorola Data Link Communication (MDLC) networks (potentially over a variety of serial, RF and/or Ethernet links) and TCP/IP networks. Communication with RTUs behind the gateway is done by means of the proprietary IPGW protocol (5001/TCP). This protocol does not have any authentication features, allowing any attacker capable of communicating with the port in question to invoke (a subset of) desired functionality.Show less
1Motorola
1Ace1000 Firmware
Jun 17, 2026
Jul 26, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
The Motorola ACE1000 RTU through 2022-05-02 uses ECB encryption unsafely. It can communicate with an XRT LAN-to-radio gateway by means of an embedded client. Credentials for accessing this gateway are stored after being...Show more
The Motorola ACE1000 RTU through 2022-05-02 uses ECB encryption unsafely. It can communicate with an XRT LAN-to-radio gateway by means of an embedded client. Credentials for accessing this gateway are stored after being encrypted with the Tiny Encryption Algorithm (TEA) in ECB mode using a hardcoded key. Similarly, the ACE1000 RTU can route MDLC traffic over Extended Command and Management Protocol (XCMP) and Network Layer (XNL) networks via the MDLC driver. Authentication to the XNL port is protected by TEA in ECB mode using a hardcoded key.Show less
1Motorola
1Ace1000 Firmware
Jun 17, 2026
Jul 26, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
The Motorola ACE1000 RTU through 2022-05-02 mishandles firmware integrity. It utilizes either the STS software suite or ACE1000 Easy Configurator for performing firmware updates. In case of the Easy Configurator, firmwar...Show more
The Motorola ACE1000 RTU through 2022-05-02 mishandles firmware integrity. It utilizes either the STS software suite or ACE1000 Easy Configurator for performing firmware updates. In case of the Easy Configurator, firmware updates are performed through access to the Web UI where file system, kernel, package, bundle, or application images can be installed. Firmware updates for the Front End Processor (FEP) module are performed via access to the SSH interface (22/TCP), where a .hex file image is transferred and a bootloader script invoked. File system, kernel, package, and bundle updates are supplied as RPM (RPM Package Manager) files while FEP updates are supplied as S-rec files. In all cases, firmware images were found to have no authentication (in the form of firmware signing) and only relied on insecure checksums for regular integrity checks.Show less
1Motorola
1Ace1000 Firmware
Jun 17, 2026
Jul 26, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
The Motorola ACE1000 RTU through 2022-05-02 ships with a hardcoded SSH private key and initialization scripts (such as /etc/init.d/sshd_service) only generate a new key if no private-key file exists. Thus, this hardcoded...Show more
The Motorola ACE1000 RTU through 2022-05-02 ships with a hardcoded SSH private key and initialization scripts (such as /etc/init.d/sshd_service) only generate a new key if no private-key file exists. Thus, this hardcoded key is likely to be used by default.Show less
1Motorola
1Ace1000 Firmware
Jun 17, 2026
Jul 26, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
The Motorola ACE1000 RTU through 2022-05-02 has default credentials. It exposes an SSH interface on port 22/TCP. This interface is used for remote maintenance and for SFTP file-transfer operations that are part of engine...Show more
The Motorola ACE1000 RTU through 2022-05-02 has default credentials. It exposes an SSH interface on port 22/TCP. This interface is used for remote maintenance and for SFTP file-transfer operations that are part of engineering software functionality. Access to this interface is controlled by 5 preconfigured accounts (root, abuilder, acelogin, cappl, ace), all of which come with default credentials. Although the ACE1000 documentation mentions the root, abuilder and acelogin accounts and instructs users to change the default credentials, the cappl and ace accounts remain undocumented and thus are unlikely to have their credentials changed.Show less
1Motorola
1Ace1000 Firmware
Jun 17, 2026
Jul 26, 2022
N/A· v4
8.8 HIGH· v3
N/A· v2
Motorola ACE1000 RTUs through 2022-05-02 mishandle application integrity. They allow for custom application installation via either STS software, the C toolkit, or the ACE1000 Easy Configurator. In the case of the Easy C...Show more
Motorola ACE1000 RTUs through 2022-05-02 mishandle application integrity. They allow for custom application installation via either STS software, the C toolkit, or the ACE1000 Easy Configurator. In the case of the Easy Configurator, application images (as PLX/DAT/APP/CRC files) are uploaded via the Web UI. In case of the C toolkit, they are transferred and installed using SFTP/SSH. In each case, application images were found to have no authentication (in the form of firmware signing) and only relied on insecure checksums for regular integrity checks.Show less
1Motorola
2Device Help
Ready For
Jun 17, 2026
Apr 22, 2022
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Versions of Motorola Ready For and Motorola Device Help Android applications prior to 2021-04-08 do not properly verify the server certificate which could lead to the communication channel being accessible by an attacker...Show more
Versions of Motorola Ready For and Motorola Device Help Android applications prior to 2021-04-08 do not properly verify the server certificate which could lead to the communication channel being accessible by an attacker.Show less
1Motorola
10T008 Firmware
T100 FirmwareT101 Firmware+7 more
Jun 17, 2026
Dec 15, 2021
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Certain Motorola Solutions Avigilon devices allow XSS in the administrative UI. This affects T200/201 before 4.10.0.68; T290 before 4.4.0.80; T008 before 2.2.0.86; T205 before 4.12.0.62; T204 before 3.28.0.166; and T100,...Show more
Certain Motorola Solutions Avigilon devices allow XSS in the administrative UI. This affects T200/201 before 4.10.0.68; T290 before 4.4.0.80; T008 before 2.2.0.86; T205 before 4.12.0.62; T204 before 3.28.0.166; and T100, T101, T102, and T103 before 2.6.0.180.Show less
1Motorola
1Mm1000 Firmware
Jun 17, 2026
Aug 17, 2021
N/A· v4
6.8 MEDIUM· v3
7.2 HIGH· v2
A privilege escalation vulnerability was reported in the MM1000 device configuration web server, which could allow privileged shell access and/or arbitrary privileged commands to be executed on the adapter.
1Motorola
1Mm1000 Firmware
Jun 17, 2026
Aug 17, 2021
N/A· v4
4.6 MEDIUM· v3
2.1 LOW· v2
The Motorola MM1000 device configuration portal can be accessed without authentication, which could allow adapter settings to be modified.
1Motorola
1Cx2 Firmware
Jun 17, 2026
Jul 21, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
An command injection vulnerability in HNAP1/SetWLanApcliSettings of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to execute arbitrary system commands.
1Motorola
1Cx2 Firmware
Jun 17, 2026
Jul 21, 2021
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
An issue in HNAP1/GetMultipleHNAPs of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to access the components GetStationSettings, GetWebsiteFilterSettings and GetNetworkSettings without authentic...Show more
An issue in HNAP1/GetMultipleHNAPs of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to access the components GetStationSettings, GetWebsiteFilterSettings and GetNetworkSettings without authentication.Show less