xiongmaitech Vulnerabilities and Affected Products
Vulnerabilities associated with uc-httpd.
Products
Clear product- uc-httpd2 vulnerabilities
- ahb7004t-gs-v3_firmware1 vulnerability
- ahb7004t-mhv2_firmware1 vulnerability
- ahb7008t-mh-v2_firmware1 vulnerability
- ahb7804r-mh-v2_firmware1 vulnerability
- ahb8004t-gl_firmware1 vulnerability
- ahb8008t-gl_firmware1 vulnerability
- ahb8032f-lme_firmware1 vulnerability
- mbd6304t1 vulnerability
- xm530_r80x30-pq_8m_firmware1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2018-10088CRITICAL | xiongmaitech uc-httpd Improper Restriction of Operations within the Bounds of a Memory BufferBuffer overflow in XiongMai uc-httpd 1.0.0 has unspecified impact and attack vectors, a different vulnerability than CVE-2017-16725. | CVSS9.8v3.0 | EPSS39.7% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |
CVE-2017-7577CRITICAL | xiongmaitech uc-httpd Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')XiongMai uc-httpd has directory traversal allowing the reading of arbitrary files via a "GET ../" HTTP request. CWE-22Apr 7, 2017 | CVSS9.8v3.0 | EPSS29% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |