Telstra's vulnerability footprint centers on the Arcadyan LH1000 residential gateway device and associated firmware, with observed exposure in command-injection and file-upload handling flaws. Treat this as a compact vendor profile rather than a broad trend line; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Telstra over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-43478CRITICAL fake_upload.cgi on the Telstra Smart Modem Gen 2 (Arcadyan LH1000), firmware versions < 0.18.15r, allows unauthenticated attackers to upload firmware images and configuration backu | Sep 20, 2023 | 9.8 | 37 | NO | NO |
CVE-2023-43477HIGH The ping_from parameter of ping_tracerte.cgi in the web UI of Telstra Smart Modem Gen 2 (Arcadyan LH1000), firmware versions < 0.18.15r, was not properly sanitized before being use | Sep 20, 2023 | 8.8 | 28 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Telstra.
Media articles that mention a CVE ID that affects a product developed by Telstra — matched by CVE ID, not by vendor name.