This page lists publicly disclosed CVE vulnerabilities affecting technicolor tc7200_firmware (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2014-1677 | Technicolor TC7200 with firmware STD6.01.12 could allow remote attackers to obtain sensitive information. | [email protected] | 7.5 | 28.05% | 2017-04-03 | 2026-05-13 |
| CVE-2014-0621 | Multiple cross-site request forgery (CSRF) vulnerabilities in Technicolor (formerly Thomson) TC7200 STD6.01.12 allow remote attackers to hijack the authentication of administrators for requests that (1) perform a factory reset via a request to goform/system/factory, (2) disable advanced options via a request to goform/advanced/options, (3) remove ip-filters via the IpFilterAddressDelete1 parameter to goform/advanced/ip-filters, or (4) remove firewall settings via the cbFirewall parameter to gofo | [email protected] | 6.8 | 0.40% | 2014-01-08 | 2026-04-29 |
| CVE-2014-0620 | Multiple cross-site scripting (XSS) vulnerabilities in Technicolor (formerly Thomson) TC7200 STD6.01.12 allow remote attackers to inject arbitrary web script or HTML via the (1) ADDNewDomain parameter to parental/website-filters.asp or (2) VmTracerouteHost parameter to goform/status/diagnostics-route. | [email protected] | 4.3 | 0.82% | 2014-01-08 | 2026-04-29 |