Miele records
4 published records for vendor miele.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-287 Improper Authentication1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-639 Authorization Bypass Through User-Controlled Key1
- CWE-732 Incorrect Permission Assignment for Critical Resource1
The weakness classes this vendor ships most often: where to look.
CWEAll records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2019-20481No exploit | In MIELE XGW 3000 ZigBee Gateway before 2.4.0, the Password Change Function does not require knowledge of the old password.miele · xgw 3000 zigbee gateway firmware · CWE-287 | Critical9.8 | — | 0.6% | Feb 24, 2020 |
35Monitor | CVE-2019-20480No exploit | In MIELE XGW 3000 ZigBee Gateway before 2.4.0, a malicious website visited by an authenticated admin user or a malicious mail is allowed to miele · xgw 3000 zigbee gateway firmware · CWE-352 | High8.8 | — | 0.4% | Feb 24, 2020 |
32Monitor | CVE-2022-3589No exploit | Miele: Vulnerability in cloud service used by appWashmiele · appwash · CWE-639 | High8.1 | — | 0.7% | Nov 21, 2022 |
29Monitor | CVE-2022-22521No exploit | Privilege Escalation in Miele Benchmark Programming Toolmiele · benchmark programming tool · CWE-732 | High7.3 | — | 0.5% | Apr 27, 2022 |
- CVE-2019-2048139Monitor
In MIELE XGW 3000 ZigBee Gateway before 2.4.0, the Password Change Function does not require knowledge of the old password.
CriticalCVSS 9.8No exploitEPSS 1%miele · xgw 3000 zigbee gateway firmwareFeb 24, 2020
- CVE-2019-2048035Monitor
In MIELE XGW 3000 ZigBee Gateway before 2.4.0, a malicious website visited by an authenticated admin user or a malicious mail is allowed to
HighCVSS 8.8No exploitEPSS 0%miele · xgw 3000 zigbee gateway firmwareFeb 24, 2020
- CVE-2022-358932Monitor
Miele: Vulnerability in cloud service used by appWash
HighCVSS 8.1No exploitEPSS 1%miele · appwashNov 21, 2022
- CVE-2022-2252129Monitor
Privilege Escalation in Miele Benchmark Programming Tool
HighCVSS 7.3No exploitEPSS 1%miele · benchmark programming toolApr 27, 2022