Products: 4
    Vulnerabilities: 8
    Known Exploited: 0
    1
    Critical Level Threats
    5
    High Level Threats
    2
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2024-58314

    Atcom 2.7.x.x Authenticated Command Injection via Web Configuration CGI

    Last Modified: Apr 15, 2026
    Published: Dec 12, 2025

    CVE-2019-12328

    A command injection (missing input validation) issue in the remote phonebook configuration URI in the web interface of the Atcom A10W VoIP phone with firmware 2.6.1a2421 allows an authenticated remote attacker in the same network to trigger OS commands via shell metacharacters in a POST request.

    Last Modified: Nov 21, 2024
    Published: Jul 22, 2019

    CVE-2014-2318

    SQL injection vulnerability in ATCOM Netvolution 3 allows remote attackers to execute arbitrary SQL commands via the m parameter.

    Last Modified: Apr 12, 2025
    Published: Mar 10, 2014

    CVE-2010-4966

    Cross-site scripting (XSS) vulnerability in default.asp in ATCOM Netvolution allows remote attackers to inject arbitrary web script or HTML via the query parameter in a Search action.

    Last Modified: Apr 11, 2025
    Published: Oct 21, 2011

    CVE-2010-4967

    SQL injection vulnerability in default.asp in ATCOM Netvolution 2.5.6 allows remote attackers to execute arbitrary SQL commands via the artID parameter.

    Last Modified: Apr 11, 2025
    Published: Oct 21, 2011
    Items Per Page