CVE-2023-23770
https://notcve.org/view.php?id=CVE-2023-23770
Motorola MBTS Site Controller accepts hard-coded backdoor password. The Motorola MBTS Site Controller Man Machine Interface (MMI), allowing for service technicians to diagnose and configure the device, accepts a hard-coded backdoor password that cannot be changed or disabled. • https://tetraburst.com • CWE-259: Use of Hard-coded Password CWE-798: Use of Hard-coded Credentials •
CVE-2023-31531
https://notcve.org/view.php?id=CVE-2023-31531
Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the tomography_ping_number parameter. • https://github.com/leetsun/IoT/tree/main/Motorola-CX2L/CI3 • CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') •
CVE-2023-31528
https://notcve.org/view.php?id=CVE-2023-31528
Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the staticroute_list parameter. • https://github.com/leetsun/IoT/tree/main/Motorola-CX2L/CI2 • CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') •
CVE-2023-31530
https://notcve.org/view.php?id=CVE-2023-31530
Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the smartqos_priority_devices parameter. • https://github.com/leetsun/IoT/tree/main/Motorola-CX2L/CI4 • CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') •
CVE-2023-31529
https://notcve.org/view.php?id=CVE-2023-31529
Motorola CX2L Router 1.0.1 was discovered to contain a command injection vulnerability via the system_time_timezone parameter. • https://github.com/leetsun/IoT/tree/main/Motorola-CX2L/CI1 • CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') •