Filtered by vendor Wayos Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-37794 1 Wayos 2 Fbm-291w, Fbm-291w Firmware 2023-07-26 9.8 Critical
WAYOS FBM-291W 19.09.11V was discovered to contain a command injection vulnerability via the component /upgrade_filter.asp.
CVE-2023-37793 1 Wayos 2 Fbm-291w, Fbm-291w Firmware 2023-07-26 9.8 Critical
WAYOS FBM-291W 19.09.11V was discovered to contain a buffer overflow via the component /upgrade_filter.asp.
CVE-2022-41489 1 Wayos 12 Lq-04, Lq-04 Firmware, Lq-05 and 9 more 2022-10-14 8.1 High
WAYOS LQ_09 22.03.17V was discovered to contain a Cross-Site Request Forgery (CSRF) which allows attackers to send crafted requests to the server from the affected device. This vulnerability is exploitable due to a lack of authentication in the component Usb_upload.htm.