Skip to content
Noroxi

elenos records

8 published records for vendor elenos.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

8 records
  • Improper Access Control leads to privilege escalation affecting Elenos ETG150 FM transmitter running on version 3.12 by exploiting user's ro

    HighCVSS 8.8No exploitEPSS 1%

    elenos · etg150 fm firmwareJun 23, 2023

  • Improper Access Control leads to adding a high-privilege user affecting Elenos ETG150 FM transmitter running on version 3.12 by exploiting u

    HighCVSS 8.8No exploitEPSS 1%

    elenos · etg150 firmwareJun 23, 2023

  • A lack of rate limiting in Elenos ETG150 FM transmitter v3.12 allows attackers to obtain user credentials via brute force and cause other un

    HighCVSS 7.5No exploitEPSS 1%

    elenos · etg150 firmwareOct 31, 2023

  • Elenos ETG150 FM transmitter running on version 3.12 was discovered to be leaking SMTP credentials and other sensitive information by exploi

    MediumCVSS 6.5No exploitEPSS 1%

    elenos · etg150 firmwareJun 23, 2023

  • An Insecure Direct Object Reference (IDOR) vulnerability leads to events profiles access in Elenos ETG150 FM transmitter running on version

    MediumCVSS 6.5No exploitEPSS 0%

    elenos · etg150 firmwareOct 11, 2023

  • An issue discovered in Elenos ETG150 FM transmitter v3.12 allows attackers to enumerate user accounts based on server responses when credent

    MediumCVSS 5.3No exploitEPSS 0%

    elenos · etg150 firmwareOct 31, 2023

  • Insufficient session expiration in Elenos ETG150 FM Transmitter v3.12 allows attackers to arbitrarily change transmitter configuration and d

    MediumCVSS 5.3No exploitEPSS 0%

    elenos · etg150 firmwareOct 31, 2023

  • Improper access control in Elenos ETG150 FM transmitter v3.12 allows attackers to make arbitrary configuration edits that are only accessed

    LowCVSS 2.7No exploitEPSS 0%

    elenos · etg150 firmwareOct 31, 2023