CVE Tools

Janitza

7 CVEs tracked since 2015. Since Oct 2015, none of them reached CISA KEV.

Janitza CVEs per month

Oct 2015 to Oct 2015. Point at a month, or focus the strip and use the arrow keys.
Janitza CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2015-1070

Products

The products that kept showing up in Janitza's monthly top three, with their CVEs summed over those months.

  1. Umg 50871 month
  2. Umg 50971 month
  3. Umg 51171 month

Latest CVEs

The 14 most recently published vulnerabilities affecting Janitza.

  1. CVE-2025-41712Incorrect Permission Assignment on power analyzer6.5
  2. CVE-2025-41711Use of a Broken or Risky Cryptographic Algorithm for firmware images of power analyzer5.3
  3. CVE-2025-41710Use of Hard-coded Credentials in power analyzer6.5
  4. CVE-2025-41709Command injection in power analyzer via Modbus-TCP and Modbus-RTU9.8
  5. CVE-2025-41729DoS via Modbus Read Command7.5
  6. CVE-2023-50895In Janitza GridVis through 9.0.66, exposed dangerous methods in the de.janitza.pasw.project.server.ServerDatabaseProject project load functionality allow remote authenticated administrative users t...7.2
  7. CVE-2023-50894In Janitza GridVis through 9.0.66, use of hard-coded credentials in the de.janitza.pasw.feature.impl.activators.PasswordEncryption password encryption function allows remote authenticated administr...8.8
  8. CVE-2015-3967Cross-site request forgery (CSRF) vulnerability on Janitza UMG 508, 509, 511, 604, and 605 devices allows remote attackers to hijack the authentication of arbitrary users.6.8
  9. CVE-2015-3972The web interface on Janitza UMG 508, 509, 511, 604, and 605 devices supports only short PIN values for authentication, which makes it easier for remote attackers to obtain access via a brute-force...10.0
  10. CVE-2015-3973Janitza UMG 508, 509, 511, 604, and 605 devices improperly generate session tokens, which makes it easier for remote attackers to determine a PIN value via unspecified computations on session-token...5.0
  11. CVE-2015-3970Multiple cross-site scripting (XSS) vulnerabilities in the web interface on Janitza UMG 508, 509, 511, 604, and 605 devices allow remote attackers to inject arbitrary web script or HTML via unspeci...4.3
  12. CVE-2015-3969Janitza UMG 508, 509, 511, 604, and 605 devices allow remote attackers to obtain sensitive network-connection information via a request to UDP port (1) 1234 or (2) 1235.5.0
  13. CVE-2015-3971The debug interface on Janitza UMG 508, 509, 511, 604, and 605 devices does not require authentication, which allows remote attackers to read or write to files, or execute arbitrary JASIC code, via...7.5
  14. CVE-2015-3968The FTP service on Janitza UMG 508, 509, 511, 604, and 605 devices has a default password, which makes it easier for remote attackers to read or write to files via a session on TCP port 21.7.5

The record

Peak rank
#22 in Oct 2015
Busiest month shown
Oct 2015, 7 CVEs
Months with a KEV entry
0 since Oct 2015
Monthly snapshots
1 since 2015
Janitza's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store