CSL Dualcom develops GPRS-based remote-access and telemetry devices, particularly its CS2300-R firmware platform, where disclosures center on improper authentication mechanisms. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Csl Dualcom over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-7286MEDIUM CSL DualCom GPRS CS2300-R devices with firmware 1.25 through 3.53 rely on a polyalphabetic substitution cipher with hardcoded keys, which makes it easier for remote attackers to de | Nov 25, 2015 | 6.4 | 23 | NO | NO |
CVE-2015-7287HIGH CSL DualCom GPRS CS2300-R devices with firmware 1.25 through 3.53 use the same 001984 default PIN across different customers' installations, which allows remote attackers to execut | Nov 25, 2015 | 7.5 | 20 | NO | NO |
CVE-2015-7285MEDIUM CSL DualCom GPRS CS2300-R devices with firmware 1.25 through 3.53 do not require authentication from Alarm Receiving Center (ARC) servers, which allows man-in-the-middle attackers | Nov 25, 2015 | 5.8 | 16 | NO | NO |
CVE-2015-7288MEDIUM CSL DualCom GPRS CS2300-R devices with firmware 1.25 through 3.53 allow remote attackers to modify the configuration via a command in an SMS message, as demonstrated by a "4 2" com | Nov 25, 2015 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Csl Dualcom.
Media articles that mention a CVE ID that affects a product developed by Csl Dualcom — matched by CVE ID, not by vendor name.