Solax's vulnerability footprint is concentrated in its Pocket WiFi 3 mobile hotspot device and associated firmware, where the durable signal centers on authorization and access-control weaknesses. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Solax over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-35835CRITICAL An issue was discovered in SolaX Pocket WiFi 3 through 3.001.02. The device provides a WiFi access point for initial configuration. The WiFi network provided has no network authent | Jan 23, 2024 | 9.8 | 27 | NO | NO |
CVE-2023-35837CRITICAL An issue was discovered in SolaX Pocket WiFi 3 through 3.001.02. Authentication for web interface is completed via an unauthenticated WiFi AP. The administrative password for the w | Jan 23, 2024 | 9.8 | 26 | NO | NO |
CVE-2023-35836MEDIUM An issue was discovered in SolaX Pocket WiFi 3 through 3.001.02. An attacker within RF range can obtain a cleartext copy of the network configuration of the device, including the W | Jan 23, 2024 | 6.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Solax.
Media articles that mention a CVE ID that affects a product developed by Solax — matched by CVE ID, not by vendor name.