Cdatatec manufactures a moderate range of data storage and networking appliances, including models such as the 97024P, 97028P, and FD-series devices, that serve mid-market and enterprise infrastructure roles. Vulnerabilities affecting this vendor skew strongly toward critical-severity outcomes and recur through a durable set of embedded-firmware weakness classes: hard-coded credentials, OS command injection, cleartext transmission of sensitive data, and improper access control—patterns typical of network appliances where authentication and command-parsing logic sit directly exposed to network interfaces. Defenders should prioritize inventory and isolation of these devices and track this vendor's firmware updates closely; current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Cdatatec over time
Signals from CVEs in this vendor scope (14 CVEs).
14 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-4257CRITICAL A vulnerability was found in C-DATA Web Management System. It has been rated as critical. This issue affects some unknown processing of the file cgi-bin/jumpto.php of the component | Dec 1, 2022 | 9.8 | 56 | NO | NO |
CVE-2022-29337CRITICAL C-DATA FD702XW-X-R430 v2.1.13_X001 was discovered to contain a command injection vulnerability via the va_cmd parameter in formlanipv6. This vulnerability allows attackers to execu | May 24, 2022 | 9.8 | 50 | NO | NO |
CVE-2020-29059CRITICAL An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD | Nov 24, 2020 | 9.8 | 31 | NO | NO |
CVE-2018-20512CRITICAL EPON CPE-WiFi devices 2.0.4-X000 are vulnerable to escalation of privileges by sending cooLogin=1, cooUser=admin, and timestamp=-1 cookies. | Jan 3, 2019 | 9.8 | 30 | NO | NO |
CVE-2020-29062CRITICAL An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD | Nov 24, 2020 | 9.8 | 28 | NO | NO |
CVE-2020-29061CRITICAL An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD | Nov 24, 2020 | 9.8 | 28 | NO | NO |
CVE-2020-29060CRITICAL An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD | Nov 24, 2020 | 9.8 | 28 | NO | NO |
CVE-2020-29058CRITICAL An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD | Nov 24, 2020 | 9.8 | 28 | NO | NO |
CVE-2020-29054CRITICAL An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD | Nov 24, 2020 | 9.8 | 28 | NO | NO |
CVE-2020-29057HIGH An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD | Nov 24, 2020 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (14 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Cdatatec.
Media articles that mention a CVE ID that affects a product developed by Cdatatec — matched by CVE ID, not by vendor name.