Filtered by vendor Ads Tec
Subscriptions
Filtered by product Irf1000 Firmware
Subscriptions
Total
4 CVE
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-14171 | 1 Ads Tec | 2 Irf1000 Firmware, Irf3000 Firmware | 2026-07-28 | 6.1 Medium |
| An unauthenticated remote attacker can abuse the improper validation of the post-login redirect of the web-UI to trick users to a malicious website. This can result in a loss of confidentiality and availability. | ||||
| CVE-2026-14169 | 1 Ads Tec | 2 Irf1000 Firmware, Irf3000 Firmware | 2026-07-28 | 8.1 High |
| Due to incorrect behavior order a low privileged remote attacker could trigger account inconsistent state via crafted input and overwrites existing user passwords which could result in complete administrative unavailability of the device. | ||||
| CVE-2026-14167 | 1 Ads Tec | 2 Irf1000 Firmware, Irf3000 Firmware | 2026-07-28 | 8.8 High |
| A low privileged remote attacker can perform privileged configuration changes reserved for the administrator level including permission management due to incorrect authorization. | ||||
| CVE-2026-14168 | 1 Ads Tec | 2 Irf1000 Firmware, Irf3000 Firmware | 2026-07-28 | 8.8 High |
| A low privileged remote attacker can gain administrator privileges due to missing authorization at the insert path of the configuration table resulting in gaining full system access. | ||||
Page 1 of 1.