Sodola Network
sodola-network
8 CVEs • 2 products
Products (2)
Click to collapseToggle
Products (2)
Click to collapse
CVEs (8)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Sodola Network 1Sl902 Swtgw124as Firmware Jun 17, 2026 Feb 27, 2026 5.1 MEDIUM· v4 6.5 MEDIUM· v3 N/A· v2 SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain a cross-site request forgery vulnerability in its management interface that allows attackers to induce authenticated users into submitting forged request...Show more |
1Sodola Network 1Sl902 Swtgw124as Firmware Jun 17, 2026 Feb 27, 2026 7.1 HIGH· v4 7.2 HIGH· v3 N/A· v2 SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain an authentication vulnerability that allows authenticated users to change account passwords without verifying the current password. Attackers who gain ac...Show more |
1Sodola Network 1Sl902 Swtgw124as Firmware Jun 17, 2026 Feb 27, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain a reflected cross-site scripting vulnerability in the management interface where user input is not properly encoded before output. Attackers can craft ma...Show more |
1Sodola Network 1Sl902 Swtgw124as Firmware Jun 17, 2026 Feb 27, 2026 9.3 CRITICAL· v4 9.8 CRITICAL· v3 N/A· v2 SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain a weak session identifier generation vulnerability that allows attackers to forge authenticated sessions by computing predictable MD5-based cookies. Atta...Show more |
1Sodola Network 1Sl902 Swtgw124as Firmware Jun 17, 2026 Feb 27, 2026 6.9 MEDIUM· v4 6.5 MEDIUM· v3 N/A· v2 SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 use the cryptographically broken MD5 hash function for session cookie generation, weakening session security. Attackers can exploit predictable session tokens co...Show more |
1Sodola Network 1Sl902 Swtgw124as Firmware Jun 17, 2026 Feb 27, 2026 6.9 MEDIUM· v4 6.5 MEDIUM· v3 N/A· v2 SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain an authentication bypass vulnerability that allows remote attackers to perform unlimited login attempts against the management interface. Attackers can c...Show more |
1Sodola Network 1Sl902 Swtgw124as Firmware Jun 17, 2026 Feb 27, 2026 8.2 HIGH· v4 5.9 MEDIUM· v3 N/A· v2 SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 transmit authentication credentials over unencrypted HTTP, allowing attackers to capture credentials. An attacker positioned to observe network traffic between a...Show more |
1Sodola Network 1Sl902 Swtgw124as Firmware Jun 17, 2026 Feb 27, 2026 9.3 CRITICAL· v4 9.8 CRITICAL· v3 N/A· v2 SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain a default credentials vulnerability that allows remote attackers to obtain administrative access to the management interface. Attackers can authenticate...Show more |