Skip to main content

Vendor archive

thomson CVEs

Beta · best-effort

9 CVEs tagged to vendor thomson0 Critical, 3 High, 6 Medium, 0 Low, 0 Unrated.

CVE-2014-4716

Published Jul 3, 2014

Cross-site request forgery (CSRF) vulnerability in Thomson TWG87OUIR allows remote attackers to hijack the authentication of unspecified victims for requests that change passwords…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-6003

Published Nov 15, 2007

Cross-site scripting (XSS) vulnerability in cgi/b/ic/connect in the Thomson SpeedTouch 716 with firmware 5.4.0.14 allows remote attackers to inject arbitrary web script or HTML vi…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-4753

Published Sep 8, 2007

The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) via (1) an empty SIP message or (2) a SIP INVITE message with…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-4553

Published Aug 28, 2007

The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) via an INVITE message with a Via header that contains a '/' (…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0946

Published Mar 1, 2006

Cross-site scripting (XSS) vulnerability in Thomson SpeedTouch modems running firmware 5.3.2.6.0 allows remote attackers to inject arbitrary web script or HTML via the name parame…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0947

Published Mar 1, 2006

Thomson SpeedTouch modem running firmware 5.3.2.6.0 allows remote attackers to create users that cannot be deleted via scripting code in the "31" parameter in a NewUser function,…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-0494

Published Feb 21, 2005

The RgSecurity form in the HTTP server for the Thomson TCW690 cable modem running firmware 2.1 and software ST42.03.0a does not properly validate the password before performing ch…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2004-0641

Published Aug 5, 2004

Thomson SpeedTouch 510 ADSL Router with firmware GV8BAA3.270, and possibly earlier versions, generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attacke…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2003-1085

Published Dec 31, 2003

The HTTP server in the Thomson TWC305, TWC315, and TCW690 cable modem ST42.03.0a allows remote attackers to cause a denial of service (unstable service) via a long GET request, po…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1