Ewon
6 CVEs tracked since 2015. Since Dec 2015, none of them reached CISA KEV.
Ewon CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2015-12 | 6 | 0 |
Products
The products that kept showing up in Ewon's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 7 most recently published vulnerabilities affecting Ewon.
- CVE-2019-25470eWON Firmware 12.2-13.0 Authentication Bypass via wsdReadForm7.5
- CVE-2015-7925Cross-site request forgery (CSRF) vulnerability on eWON devices with firmware through 10.1s0 allows remote attackers to hijack the authentication of administrators for requests that trigger firmwar...8.0
- CVE-2015-7924eWON devices with firmware before 10.1s0 do not trigger the discarding of browser session data in response to a log-off action, which makes it easier for remote attackers to obtain access by levera...8.8
- CVE-2015-7928eWON devices with firmware before 10.1s0 do not have an off autocomplete attribute for a password field, which makes it easier for remote attackers to obtain access by leveraging an unattended work...8.5
- CVE-2015-7929eWON devices with firmware through 10.1s0 support unspecified GET requests, which might allow remote attackers to obtain sensitive information by reading (1) web-server access logs, (2) web-server ...4.3
- CVE-2015-7927Cross-site scripting (XSS) vulnerability on eWON devices with firmware through 10.1s0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.6.1
- CVE-2015-7926eWON devices with firmware before 10.1s0 omit RBAC for I/O server information and status requests, which allows remote attackers to obtain sensitive information via an unspecified URL.9.9
The record
- Peak rank
- #27 in Dec 2015
- Busiest month shown
- Dec 2015, 6 CVEs
- Months with a KEV entry
- 0 since Dec 2015
- Monthly snapshots
- 1 since 2015