← Back

Telus

telus

3 CVEs • 4 products

Products (4)

Click to collapse
Toggle

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Telus
1Prv65b444a S Ts Firmware
Nov 21, 2024
Oct 11, 2021
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
The Telus Wi-Fi Hub (PRV65B444A-S-TS) with firmware version 3.00.20 is affected by an authenticated command injection vulnerability in multiple parameters passed to tr69_cmd.cgi. A remote attacker connected to the router...Show more
The Telus Wi-Fi Hub (PRV65B444A-S-TS) with firmware version 3.00.20 is affected by an authenticated command injection vulnerability in multiple parameters passed to tr69_cmd.cgi. A remote attacker connected to the router's LAN and authenticated with a super user account, or using a bypass authentication vulnerability like CVE-2021-20090 could leverage this issue to run commands or gain a shell as root on the target device.Show less
1Telus
1Prv65b444a S Ts Firmware
Nov 21, 2024
Oct 11, 2021
N/A· v4
4.0 MEDIUM· v3
1.9 LOW· v2
The Telus Wi-Fi Hub (PRV65B444A-S-TS) with firmware version 3.00.20 is vulnerable to an authenticated arbitrary file read. An authenticated user with physical access to the device can read arbitrary files from the device...Show more
The Telus Wi-Fi Hub (PRV65B444A-S-TS) with firmware version 3.00.20 is vulnerable to an authenticated arbitrary file read. An authenticated user with physical access to the device can read arbitrary files from the device by preparing and connecting a specially prepared USB drive to the device, and making a series of crafted requests to the device's web interface.Show less
1Telus
1Actiontec T2200h Firmware
Nov 21, 2024
Aug 20, 2018
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
fileshare.cmd on Telus Actiontec T2200H T2200H-31.128L.03 devices allows OS Command Injection via shell metacharacters in the smbdUserid or smbdPasswd field.