Skip to content
Noroxi

ecobee records

4 published records for vendor ecobee.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

4 records
  • Hardcoded default root credentials exist on the ecobee3 lite 4.5.81.200 device.

    CriticalCVSS 9.8No exploitEPSS 1%

    ecobee · ecobee3 lite firmwareAug 3, 2021

  • A heap-based buffer overflow vulnerability exists on the ecobee3 lite 4.5.81.200 device in the HKProcessConfig function of the HomeKit Wirel

    HighCVSS 8.2No exploitEPSS 1%

    ecobee · ecobee3 lite firmwareAug 3, 2021

  • A NULL pointer dereference vulnerability exists on the ecobee3 lite 4.5.81.200 device in the HomeKit Wireless Access Control setup process.

    HighCVSS 7.5No exploitEPSS 2%

    ecobee · ecobee3 lite firmwareAug 3, 2021

  • CVE-2018-6402
    30Monitor

    Ecobee Ecobee4 4.2.0.171 devices can be forced to deauthenticate and connect to an unencrypted Wi-Fi network with the same SSID, even if the

    HighCVSS 7.5No exploitEPSS 0%

    ecobee · ecobee4 firmwareApr 14, 2020