catontechnology records
3 published records for vendor catontechnology.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')2
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2023-2520No exploit | Caton Prime Ping command injectioncatontechnology · caton prime · CWE-77 | Critical9.8 | — | 2.5% | May 4, 2023 |
39Monitor | CVE-2023-2519No exploit | Caton CTP Relay Server API login sql injectioncatontechnology · ctp relay server · CWE-89 | Critical9.8 | — | 0.6% | May 4, 2023 |
26Monitor | CVE-2023-2682No exploit | Caton Live Mini_HTTPD ping.cgi command injectioncatontechnology · caton live · CWE-77 | Medium6.3 | — | 1.9% | May 12, 2023 |
- CVE-2023-252040Plan
Caton Prime Ping command injection
CriticalCVSS 9.8No exploitEPSS 3%catontechnology · caton primeMay 4, 2023
- CVE-2023-251939Monitor
Caton CTP Relay Server API login sql injection
CriticalCVSS 9.8No exploitEPSS 1%catontechnology · ctp relay serverMay 4, 2023
- CVE-2023-268226Monitor
Caton Live Mini_HTTPD ping.cgi command injection
MediumCVSS 6.3No exploitEPSS 2%catontechnology · caton liveMay 12, 2023