Vulnerabilities (CVE)

Filtered by vendor Inhandnetworks Subscribe
Filtered by product Ir912l-fq58 Firmware
Total 5 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-38718 1 Inhandnetworks 4 Ir912l-fq58, Ir912l-fq58 Firmware, Ir915l-fq39-s and 1 more 2026-06-22 N/A 7.5 HIGH
InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a buffer overflow vulnerability in the device registration function. This vulnerability could allow an attacker to cause a denial of service attack on the remote target device.
CVE-2026-38716 1 Inhandnetworks 4 Ir912l-fq58, Ir912l-fq58 Firmware, Ir915l-fq39-s and 1 more 2026-06-22 N/A 9.8 CRITICAL
InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a command injection vulnerability in the Python application export function. This vulnerability allows remote attackers to execute arbitrary commands as root via a crafted input.
CVE-2026-38717 1 Inhandnetworks 4 Ir912l-fq58, Ir912l-fq58 Firmware, Ir915l-fq39-s and 1 more 2026-06-22 N/A 9.8 CRITICAL
InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a command injection vulnerability in the file upload function. The vulnerability allows remote attackers to execute arbitrary commands as root via a crafted input.
CVE-2026-38715 1 Inhandnetworks 4 Ir912l-fq58, Ir912l-fq58 Firmware, Ir915l-fq39-s and 1 more 2026-06-22 N/A 9.8 CRITICAL
InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a command injection vulnerability in the log viewing function. This vulnerability allows remote attackers to execute arbitrary commands as root via a crafted input.
CVE-2026-38714 1 Inhandnetworks 4 Ir912l-fq58, Ir912l-fq58 Firmware, Ir915l-fq39-s and 1 more 2026-06-22 N/A 9.8 CRITICAL
InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a command injection vulnerability in the Python configuration function. This vulnerability allows remote attackers to execute arbitrary commands as root via a crafted input.