Cmg operates a narrowly scoped product line centered on WAP (Wireless Application Protocol) gateway infrastructure, a legacy telecommunications intermediation layer. The documented vulnerability surface maps to the gateway's protocol-translation and request-handling functions, though the specific weakness characterization remains broad. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Cmg over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2001-1568MEDIUM CMG WAP gateway does not verify the fully qualified domain name URL with X.509 certificates from root certificate authorities, which allows remote attackers to spoof SSL certificat | Dec 31, 2001 | 6.4 | 21 | NO | NO |
CVE-2001-1569MEDIUM Openwave WAP gateway does not verify the fully qualified domain name URL with X.509 certificates from root certificate authorities, which allows remote attackers to spoof SSL certi | Dec 31, 2001 | 6.4 | 17 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Cmg.
Media articles that mention a CVE ID that affects a product developed by Cmg — matched by CVE ID, not by vendor name.