A1 firmware
This hub aggregates every CVE we track for A1 firmware, a product in the hardware firmware space. Use it to gauge the current risk picture and drill into individual advisories.
8
CVEs tracked
1
Critical
3
High
0
In CISA KEV
Severity distribution
MEDIUM4HIGH3CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
0
0
0
0
0
0
0
0
2024-102026-09
Latest CVEs
The 8 most recently published vulnerabilities affecting A1 firmware.
- CVE-2025-55423A command injection vulnerability exists in the upnp_relay() function in multiple ipTIME router models because the controlURL value used to pass port-forwarding information to an upper router is pa...9.8
- CVE-2023-3104Missing Authentication for Critical Function in Unitree Robotics A15.7
- CVE-2023-3103Authentication Bypass by Spoofing in Unitree Robotics A18.0
- CVE-2021-42852A command injection vulnerability was reported in some Lenovo Personal Cloud Storage devices that could allow an authenticated user to execute operating system commands by sending a crafted packet ...8.0
- CVE-2021-42851A vulnerability was reported in some Lenovo Personal Cloud Storage devices that could allow an unauthenticated user to create a standard user account.6.3
- CVE-2021-42850A weak default administrator password for the web interface and serial port was reported in some Lenovo Personal Cloud Storage devices that could allow unauthorized device access to an attacker wit...8.8
- CVE-2021-42849A weak default password for the serial port was reported in some Lenovo Personal Cloud Storage devices that could allow unauthorized device access to an attacker with physical access.6.8
- CVE-2021-42848An information disclosure vulnerability was reported in some Lenovo Personal Cloud Storage devices that could allow an unauthenticated user to retrieve device and networking details.4.3
Product normalization is registry-driven with AI assist and human review. How it works