Vulnerabilities (CVE)

Filtered by vendor Ampedwireless Subscribe
Filtered by product R10000
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-7279 1 Ampedwireless 2 R10000, R10000 Firmware 2023-12-10 5.0 MEDIUM 5.3 MEDIUM
Amped Wireless R10000 devices with firmware 2.5.2.11 use an improper algorithm for selecting the ID value in the header of a DNS query, which makes it easier for remote attackers to spoof responses by predicting this value.
CVE-2015-7277 1 Ampedwireless 2 R10000, R10000 Firmware 2023-12-10 9.3 HIGH 9.8 CRITICAL
The web administration interface on Amped Wireless R10000 devices with firmware 2.5.2.11 has a default password of admin for the admin account, which allows remote attackers to obtain administrative privileges by leveraging a LAN session.
CVE-2015-7278 1 Ampedwireless 2 R10000, R10000 Firmware 2023-12-10 6.8 MEDIUM 8.8 HIGH
Cross-site request forgery (CSRF) vulnerability on Amped Wireless R10000 devices with firmware 2.5.2.11 allows remote attackers to hijack the authentication of arbitrary users.