ecobee kayıtları
ecobee üreticisine ait 4 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-327 Use of a Broken or Risky Cryptographic Algorithm1
- CWE-476 NULL Pointer Dereference1
- CWE-787 Out-of-bounds Write1
- CWE-798 Use of Hard-coded Credentials1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
4 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2021-27952İstismar yok | Hardcoded default root credentials exist on the ecobee3 lite 4.5.81.200 device.ecobee · ecobee3 lite firmware · CWE-798 | Kritik9,8 | — | %1,1 | 3 Ağu 2021 |
32İzleyin | CVE-2021-27954İstismar yok | A heap-based buffer overflow vulnerability exists on the ecobee3 lite 4.5.81.200 device in the HKProcessConfig function of the HomeKit Wirelecobee · ecobee3 lite firmware · CWE-787 | Yüksek8,2 | — | %0,9 | 3 Ağu 2021 |
31İzleyin | CVE-2021-27953İstismar yok | A NULL pointer dereference vulnerability exists on the ecobee3 lite 4.5.81.200 device in the HomeKit Wireless Access Control setup process.ecobee · ecobee3 lite firmware · CWE-476 | Yüksek7,5 | — | %1,7 | 3 Ağu 2021 |
30İzleyin | CVE-2018-6402İstismar yok | Ecobee Ecobee4 4.2.0.171 devices can be forced to deauthenticate and connect to an unencrypted Wi-Fi network with the same SSID, even if theecobee · ecobee4 firmware · CWE-327 | Yüksek7,5 | — | %0,2 | 14 Nis 2020 |
- CVE-2021-2795239İzleyin
Hardcoded default root credentials exist on the ecobee3 lite 4.5.81.200 device.
KritikCVSS 9,8İstismar yokEPSS %1ecobee · ecobee3 lite firmware3 Ağu 2021
- CVE-2021-2795432İzleyin
A heap-based buffer overflow vulnerability exists on the ecobee3 lite 4.5.81.200 device in the HKProcessConfig function of the HomeKit Wirel
YüksekCVSS 8,2İstismar yokEPSS %1ecobee · ecobee3 lite firmware3 Ağu 2021
- CVE-2021-2795331İzleyin
A NULL pointer dereference vulnerability exists on the ecobee3 lite 4.5.81.200 device in the HomeKit Wireless Access Control setup process.
YüksekCVSS 7,5İstismar yokEPSS %2ecobee · ecobee3 lite firmware3 Ağu 2021
- CVE-2018-640230İzleyin
Ecobee Ecobee4 4.2.0.171 devices can be forced to deauthenticate and connect to an unencrypted Wi-Fi network with the same SSID, even if the
YüksekCVSS 7,5İstismar yokEPSS %0ecobee · ecobee4 firmware14 Nis 2020