Ipn4g
Vendor:
First CVE: Dec 24, 2025 · Active for under a year
7
Total CVEs
More Total CVEs than 83% of tracked products
7.0
Avg CVEs / Year
Higher CVE frequency than 92% of tracked products
7.8
Avg CVSS
Higher Avg CVSS than 63% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Ipn4g over time
Volume of CVEsAvg CVSS Base Score
First CVE
Dec 24, 2025
6 months ago
Most Recent CVE
Dec 24, 2025
212 days ago
CVE Severity & Scoring
Ipn4g7 CVEs
29%
71%
All CVEs352,294 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local1 (14.3%)
Network6 (85.7%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low7 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None6 (85.7%)
Unknown0 (0.0%)
Required1 (14.3%)
Privileges Required
Low4 (57.1%)
High0 (0.0%)
None3 (42.9%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-25148HIGH Microhard Systems IPn4G 1.1.0 contains multiple authenticated remote code execution vulnerabilities in the admin interface that allow attackers to create crontab jobs and modify sy | Dec 24, 2025 | 8.8 | 28 | NO | NO |
CVE-2018-25143HIGH Microhard Systems IPn4G 1.1.0 contains a service vulnerability that allows authenticated users to enable a restricted SSH shell with a default 'msshc' user. Attackers can exploit a | Dec 24, 2025 | 8.8 | 28 | NO | NO |
CVE-2018-25144HIGH Microhard Systems IPn4G 1.1.0 contains an authentication bypass vulnerability in the hidden system-editor.sh script that allows authenticated attackers to read, modify, or delete a | Dec 24, 2025 | 8.4 | 27 | NO | NO |
CVE-2018-25147HIGH Microhard Systems IPn4G 1.1.0 contains hardcoded default credentials that cannot be changed through normal gateway operations. Attackers can exploit these default credentials to ga | Dec 24, 2025 | 7.5 | 25 | NO | NO |
CVE-2018-25146HIGH Microhard Systems IPn4G 1.1.0 contains an undocumented vulnerability that allows authenticated attackers to list and manipulate running system processes. Attackers can send arbitra | Dec 24, 2025 | 8.1 | 25 | NO | NO |
CVE-2018-25149MEDIUM Microhard Systems IPn4G 1.1.0 contains a cross-site request forgery vulnerability that allows attackers to perform administrative actions without user consent. Attackers can craft | Dec 24, 2025 | 6.5 | 22 | NO | NO |
CVE-2018-25145MEDIUM Microhard Systems IPn4G 1.1.0 contains a configuration file disclosure vulnerability that allows authenticated attackers to download sensitive system configuration files. Attackers | Dec 24, 2025 | 6.5 | 22 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (7 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (7 CVEs).
Media Mentions
Signals from CVEs in this product scope (7 CVEs).
Top CNAs Publishing CVEs For Ipn4g
Top CWEs
Versions
No cataloged versions.