Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Telesquare

First CVE: Jun 21, 2018Active for: 8 yearsTotal CVEs: 25
62.4
VTI Score
TOP TARGET

Telesquare's vulnerability footprint centers on a narrow set of embedded networking devices, particularly its TLR-2005KSH router and related firmware, that are deployed in industrial, enterprise, and service-provider environments where uptime and remote management are critical. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and frequently acquire public exploit code, reflecting the appeal of remotely accessible embedded systems to attackers and the memory-unsafe implementation typical of legacy firmware. The exposure recurs across buffer overflows, authorization bypass conditions, command injection, and information disclosure weaknesses that are characteristic of devices with weak input validation and limited access controls. Defenders should prioritize inventory and isolation of affected devices, particularly internet-reachable instances, and treat firmware updates as urgent when available. Current exploitation activity and severity counts are shown alongside this summary.

FAUCET AI Generated
25
Total CVEs
More Total CVEs than 97% of tracked vendors
0.6
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 9% of tracked vendors
8.8
Avg CVSS Score
Higher Avg CVSS Score than 87% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Telesquare over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 21, 2018
8 years ago
Most Recent CVE
Mar 16, 2026
131 days ago

Products(8 total)

Top CVEs

Signals from CVEs in this vendor scope (25 CVEs).

25 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2021-46422CRITICAL
Telesquare SDT-CW3B1 1.1.0 is affected by an OS command injection vulnerability that allows a remote attacker to execute OS commands without any authentication.
Apr 27, 20229.890NOYES
CVE-2021-46419CRITICAL
An unauthorized file deletion vulnerability in Telesquare TLR-2855KS6 via DELETE method can allow deletion of system files and scripts.
Apr 7, 20229.183NOYES
CVE-2021-45428CRITICAL
TLR-2005KSH is affected by an incorrect access control vulnerability. THe PUT method is enabled so an attacker can upload arbitrary files including HTML and CGI formats.
Jan 3, 20229.880NOYES
CVE-2021-46424CRITICAL
Telesquare TLR-2005KSH 1.0.0 is affected by an arbitrary file deletion vulnerability that allows a remote attacker to delete any file, even system internal files, via a DELETE requ
Apr 27, 20229.161NOYES
CVE-2021-46418HIGH
An unauthorized file creation vulnerability in Telesquare TLR-2855KS6 via PUT method can allow creation of CGI scripts.
Apr 7, 20227.557NOYES
CVE-2024-29269HIGH
An issue discovered in Telesquare TLR-2005Ksh 1.0.0 and 1.1.4 allows attackers to run arbitrary system commands via the Cmd parameter.
Apr 10, 20248.843NOYES
CVE-2025-9603CRITICAL
A vulnerability was determined in Telesquare TLR-2005KSH 1.2.4. The affected element is an unknown function of the file /cgi-bin/internet.cgi?Command=lanCfg. Executing manipulation
Aug 29, 20259.837NONO
CVE-2017-20223CRITICAL
Telesquare SKT LTE Router SDT-CS3B1 firmware version 1.2.0 contains an insecure direct object reference vulnerability that allows attackers to bypass authorization and access resou
Mar 16, 20269.831NONO
CVE-2017-20224CRITICAL
Telesquare SKT LTE Router SDT-CS3B1 version 1.2.0 contains an arbitrary file upload vulnerability that allows unauthenticated attackers to upload malicious content by exploiting en
Mar 16, 20269.830NONO
CVE-2025-26011CRITICAL
Telesquare TLR-2005KSH 1.1.4 has an unauthorized stack overflow vulnerability when requesting the admin.cgi parameter with setUsernamePassword.
Mar 26, 20259.829NONO
View all 25 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products25 CVEs
24%
68%
Severity distribution among all CVEs352,427 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network24 (96.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network1 (4.0%)
Attack Complexity
Low25 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None25 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low1 (4.0%)
High0 (0.0%)
None24 (96.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (25 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
6 CVEs
24.0% of CVEs· 97th percentile
ExploitDB
5 CVEs
20.0% of CVEs· 77th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Telesquare.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Telesquare — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Telesquare's Products

View all 3 CNAs →

Top CWEs