Vulnerabilidades em Yamaha Corporation
8 resultadosAnálise Vexday
A Yamaha Corporation possui 6 vulnerabilidades registradas na base do Vexday, todas de severidade menor a média, com nenhuma sob ataque ativo no momento. A fraqueza dominante é injeção de comando (CWE-78), padrão clássico em dispositivos embarcados. Não há CVEs críticas nem publicações recentes, indicando risco estável e baixa prioridade operacional.
CVE-2020-5548—Yamaha LTE VoIP Router(NVR700W firmware Rev.15.00.15 and earlier), Yamaha Gigabit VoIP Router(NVR510 firmware Rev.15.01.14 and earlier), YamEPSS 1.4%CVE-2021-20844—Improper neutralization of HTTP request headers for scripting syntax vulnerability in the Web GUI of RTX830 Rev.15.02.17 and earlier, NVR510EPSS 1.0%CVE-2021-20843—Cross-site script inclusion vulnerability in the Web GUI of RTX830 Rev.15.02.17 and earlier, NVR510 Rev.15.01.18 and earlier, NVR700W Rev.15EPSS 0.7%CVE-2018-0666—Yamaha routers RT57i Rev.8.00.95 and earlier, RT58i Rev.9.01.51 and earlier, NVR500 Rev.11.00.36 and earlier, RTX810 Rev.11.01.31 and earlieEPSS 0.7%CVE-2018-0665—Yamaha routers RT57i Rev.8.00.95 and earlier, RT58i Rev.9.01.51 and earlier, NVR500 Rev.11.00.36 and earlier, RTX810 Rev.11.01.31 and earlieEPSS 0.7%CVE-2024-22366MEDIUMActive debug code exists in Yamaha wireless LAN access point devices. If a logged-in user who knows how to use the debug function accesses tEPSS 0.3%CVE-2026-76131MEDIUMUse of hard-coded credentials issue exists in VOCALOID6 , which may allow an attacker to impersonate a legitimate VOCALOID6 Editor and gain EPSS 0.2%CVE-2026-76137MEDIUMMissing authentication for critical function vulnerability exists in VOCALOID6. Any process running under the same local user account as a rEPSS 0.1%