Telindus has a narrow vulnerability footprint centered on legacy networking and remote-access products such as ADSL routers and telecommunications appliances, where disclosures cluster around authorization mechanisms and file-handling controls. The observed weakness classes—including improper authorization, unrestricted file uploads, and related access-control issues—are characteristic of older embedded networking devices and reflect the security posture of products from that generation. Current severity, exploitation, and exposure figures are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Telindus over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2002-0949HIGH Telindus 1100 series ADSL router allows remote attackers to gain privileges to the device via a certain packet to UDP port 9833, which generates a reply that includes the router's | Oct 4, 2002 | 7.5 | 29 | NO | YES |
CVE-2023-26098HIGH An issue was discovered in the Open Document feature in Telindus Apsal 3.14.2022.235 b. An attacker may upload a crafted file to execute arbitrary code. | Apr 25, 2023 | 7.8 | 25 | NO | NO |
CVE-2002-2133HIGH Telindus 1100 ASDL router running firmware 6.0.x uses weak encryption for UDP session traffic, which allows remote attackers to gain unauthorized access by sniffing and decrypting | Dec 31, 2002 | 10.0 | 25 | NO | NO |
CVE-2023-26099HIGH An issue was discovered in Telindus Apsal 3.14.2022.235 b. The consultation permission is insecure. | Apr 24, 2023 | 7.1 | 23 | NO | NO |
CVE-2023-26097MEDIUM An issue was discovered in Telindus Apsal 3.14.2022.235 b. Unauthorized actions that could modify the application behaviour may not be blocked. | Apr 24, 2023 | 5.5 | 16 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Telindus.
Media articles that mention a CVE ID that affects a product developed by Telindus — matched by CVE ID, not by vendor name.