
CVE-2020-21937
https://notcve.org/view.php?id=CVE-2020-21937
21 Jul 2021 — An command injection vulnerability in HNAP1/SetWLanApcliSettings of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to execute arbitrary system commands. Una vulnerabilidad de inyección de comandos en HNAP1/SetWLanApcliSettings del enrutador CX Motorola CX2 versión 1.0.2 Build 20190508 Rel.97360n, permite a atacantes ejecutar comandos arbitrarios del sistema • https://cwe.mitre.org/data/definitions/78.html • CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') •

CVE-2020-21936
https://notcve.org/view.php?id=CVE-2020-21936
21 Jul 2021 — An issue in HNAP1/GetMultipleHNAPs of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to access the components GetStationSettings, GetWebsiteFilterSettings and GetNetworkSettings without authentication. Un problema en HNAP1/GetMultipleHNAPs del enrutador CX Motorola CX2 versión 1.0.2 Build 20190508 Rel.97360n, permite a atacantes acceder a los componentes GetStationSettings, GetWebsiteFilterSettings y GetNetworkSettings sin autenticación • https://github.com/cc-crack/router/blob/master/motocx2.md • CWE-306: Missing Authentication for Critical Function •

CVE-2020-21935
https://notcve.org/view.php?id=CVE-2020-21935
21 Jul 2021 — A command injection vulnerability in HNAP1/GetNetworkTomographySettings of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to execute arbitrary code. Una vulnerabilidad de inyección de comandos en HNAP1/GetNetworkTomographySettings del enrutador CX Motorola CX2 versión 1.0.2 Build 20190508 Rel.97360n, permite a atacantes ejecutar código arbitrario • https://github.com/cc-crack/router/blob/master/motocx2.md • CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') •

CVE-2020-21934
https://notcve.org/view.php?id=CVE-2020-21934
21 Jul 2021 — An issue was discovered in Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n where authentication to download the Syslog could be bypassed. Se detectó un problema en el enrutador CX Motorola CX2 versión 1.0.2 Build 20190508 Rel.97360n, donde se podía omitir la autenticación para descargar el Syslog • https://github.com/cc-crack/router/blob/master/motocx2.md • CWE-306: Missing Authentication for Critical Function •

CVE-2020-21933
https://notcve.org/view.php?id=CVE-2020-21933
21 Jul 2021 — An issue was discovered in Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n where the admin password and private key could be found in the log tar package. Se detectó un problema en el enrutador CX Motorola CX2 versión 1.0.2 Build 20190508 Rel.97360n, donde la contraseña de administrador y la clave privada podían encontrarse en el paquete log tar • https://github.com/cc-crack/router/blob/master/motocx2.md • CWE-532: Insertion of Sensitive Information into Log File •

CVE-2020-21932
https://notcve.org/view.php?id=CVE-2020-21932
21 Jul 2021 — A vulnerability in /Login.html of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to bypass login and obtain a partially authorized token and uid. Una vulnerabilidad en /Login.html del enrutador CX Motorola CX2 versión 1.0.2 Build 20190508 Rel.97360n, permite a atacantes omitir el inicio de sesión y obtener un token y un uid parcialmente autorizados • https://github.com/cc-crack/router/blob/master/motocx2.md • CWE-287: Improper Authentication •