Vulnerabilities (CVE)

Filtered by vendor Dreambox Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-14135 1 Dreambox 1 Opendreambox 2024-02-28 10.0 HIGH 9.8 CRITICAL
enigma2-plugins/blob/master/webadmin/src/WebChilds/Script.py in the webadmin plugin for opendreambox 2.0.0 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the command parameter to the /script URI.
CVE-2008-3936 1 Dreambox 1 Dm500c 2024-02-28 7.8 HIGH N/A
The web interface in Dreambox DM500C allows remote attackers to cause a denial of service (application hang) via a long URI.