NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85040 | CVE-2017-8078 | On the TP-Link TL-SG108E 1.0, the upgrade process can be requested remotely without authentication (httpupg.cgi with a parameter called cmd). This affects the 1.1.2 Build 20141017 Rel.50749 firmware. | 2 | 5 | Medium | 2017-05-07 | 2017-04-27 | View | |
85039 | CVE-2017-8077 | On the TP-Link TL-SG108E 1.0, there is a hard-coded ciphering key (a long string beginning with Ei2HNryt). This affects the 1.1.2 Build 20141017 Rel.50749 firmware. | 2 | 5 | Medium | 2017-05-07 | 2017-04-27 | View | |
85038 | CVE-2017-8076 | On the TP-Link TL-SG108E 1.0, admin network communications are RC4 encoded, even though RC4 is deprecated. This affects the 1.1.2 Build 20141017 Rel.50749 firmware. | 2 | 7.8 | High | 2017-05-07 | 2017-04-27 | View | |
85037 | CVE-2017-8075 | On the TP-Link TL-SG108E 1.0, a remote attacker could retrieve credentials from Switch Info log lines where passwords are in cleartext. This affects the 1.1.2 Build 20141017 Rel.50749 firmware. | 2 | 5 | Medium | 2017-05-07 | 2017-04-27 | View | |
85036 | CVE-2017-8074 | On the TP-Link TL-SG108E 1.0, a remote attacker could retrieve credentials from SEND data log lines where passwords are encoded in hexadecimal. This affects the 1.1.2 Build 20141017 Rel.50749 firmware. | 2 | 5 | Medium | 2017-05-07 | 2017-04-27 | View |
Page 665 of 17672, showing 5 records out of 88360 total, starting on record 3321, ending on 3325