Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Humaxdigital

First CVE: Jul 4, 2017Active for: 9 yearsTotal CVEs: 9

Humaxdigital develops a narrowly focused line of consumer set-top box and receiver products, primarily the HG100R and HGB10R series, whose firmware implementations exhibit persistent security weaknesses centered on cleartext transmission, credential exposure, cross-site scripting, and missing authentication controls. Vulnerabilities affecting this vendor skew strongly toward critical severity and frequently acquire public exploit code, reflecting the accessible nature of consumer devices and the severity of authentication and data-confidentiality flaws in entertainment and set-top box firmware. Defenders should treat firmware updates for these devices as high-priority; live severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
9
Total CVEs
More Total CVEs than 91% of tracked vendors
0.4
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 4% of tracked vendors
8.4
Avg CVSS Score
Higher Avg CVSS Score than 81% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Humaxdigital over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jul 4, 2017
9 years ago
Most Recent CVE
Aug 28, 2023
1,061 days ago

Products(6 total)

Top CVEs

Signals from CVEs in this vendor scope (9 CVEs).

9 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2017-11435CRITICAL
The Humax Wi-Fi Router model HG100R-* 2.0.6 is prone to an authentication bypass vulnerability via specially crafted requests to the management console. The bug is exploitable remo
Jul 19, 20179.845NOYES
CVE-2017-7317CRITICAL
An issue was discovered on Humax Digital HG100 2.0.6 devices. The attacker can find the root credentials in the backup file, aka GatewaySettings.bin.
Jul 4, 20179.830NONO
CVE-2017-7315CRITICAL
An issue was discovered on Humax Digital HG100R 2.0.6 devices. To download the backup file it's not necessary to use credentials, and the router credentials are stored in plaintext
Jul 4, 20179.830NONO
CVE-2020-9477CRITICAL
An issue was discovered on HUMAX HGA12R-02 BRGCAA 1.1.53 devices. A vulnerability in the authentication functionality in the web-based interface could allow an unauthenticated remo
Mar 4, 20209.829NONO
CVE-2020-9370CRITICAL
HUMAX HGA12R-02 BRGCAA 1.1.53 devices allow Session Hijacking.
Mar 5, 20209.128NONO
CVE-2019-19889HIGH
An issue was discovered on Humax Wireless Voice Gateway HGB10R-2 20160817_1855 devices. The attacker can discover admin credentials in the backup file, aka backupsettings.conf.
Dec 18, 20197.523NONO
CVE-2019-19890HIGH
An issue was discovered on Humax Wireless Voice Gateway HGB10R-2 20160817_1855 devices. Admin credentials are sent over cleartext HTTP.
Dec 18, 20197.522NONO
CVE-2017-7316MEDIUM
An issue was discovered on Humax Digital HG100R 2.0.6 devices. There is XSS on the 404 page.
Jul 4, 20176.120NONO
CVE-2020-27366MEDIUM
Cross Site Scripting (XSS) vulnerability in wlscanresults.html in Humax HGB10R-02 BRGCAB version 1.0.03, allows local attackers to execute arbitrary code.
Aug 28, 20236.119NONO
View all 9 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products9 CVEs
22%
22%
56%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network9 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low9 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None7 (77.8%)
Unknown0 (0.0%)
Required2 (22.2%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None9 (100.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (9 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
11.1% of CVEs· 76th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Humaxdigital.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Humaxdigital — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Humaxdigital's Products

View all 1 CNAs →

Top CWEs