Vulnerabilities (CVE)

Filtered by vendor Telosalliance Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-36642 1 Telosalliance 2 Omnia Mpx Node, Omnia Mpx Node Firmware 2024-11-21 N/A 9.8 CRITICAL
A local file disclosure vulnerability in /appConfig/userDB.json of Telos Alliance Omnia MPX Node through 1.5.0+r1 allows attackers to escalate privileges to root and execute arbitrary commands.
CVE-2020-17383 1 Telosalliance 2 Z\/ip One, Z\/ip One Firmware 2024-11-21 10.0 HIGH 9.8 CRITICAL
A directory traversal vulnerability on Telos Z/IP One devices through 4.0.0r grants an unauthenticated individual root level access to the device's file system. This can be used to identify configuration settings, password hashes for built-in accounts, and the cleartext password for remote configuration of the device through the WebUI.