Products: 4
    Vulnerabilities: 3
    Known Exploited: 0
    3
    Critical Level Threats
    0
    High Level Threats
    0
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2018-16705

    FURUNO FELCOM 250 and 500 devices allow unauthenticated access to the xml/permission.xml file containing all of the system's usernames and passwords. This includes the Admin and Service user accounts and their unsalted MD5 hashes, as well as the SMS server password in cleartext.

    Last Modified: Nov 21, 2024
    Published: Sep 10, 2018

    CVE-2018-16591

    FURUNO FELCOM 250 and 500 devices allow unauthenticated users to change the password for the Admin, Log and Service accounts, as well as the password for the protected "SMS" panel via /cgi-bin/sm_changepassword.cgi and /cgi-bin/sm_sms_changepasswd.cgi.

    Last Modified: Nov 21, 2024
    Published: Sep 10, 2018

    CVE-2018-16590

    FURUNO FELCOM 250 and 500 devices use only client-side JavaScript in login.js for authentication.

    Last Modified: Nov 21, 2024
    Published: Sep 06, 2018
    Items Per Page
    Furuno Vulnerabilities & Security CVEs | CVE-DB