Skip to content
Noroxi

engeniustech records

17 published records for vendor engeniustech.

All records

17 records
  • EnGenius EnShare IoT Gigabit Cloud Service Command Injection

    CriticalCVSS 10.0Proof of conceptEPSS 13%

    engeniustech · esr300 firmwareJun 23, 2025

  • EnGenius ENH1350EXT A8J-ENH1350EXT devices through 3.9.3.2_c1.9.51 allow (blind) OS Command Injection via shell metacharacters to the Ping o

    HighCVSS 7.8No exploitEPSS 35%

    Oct 24, 2024

  • The EnGenius EWS660AP router with firmware 2.0.284 allows an attacker to execute arbitrary commands using the built-in ping and traceroute u

    CriticalCVSS 9.8No exploitEPSS 3%

    engeniustech · ews660ap firmwareMay 9, 2019

  • EnGenius EWS356-FIT devices through 1.1.30 allow blind OS command injection.

    CriticalCVSS 9.8No exploitEPSS 1%

    engeniustech · ews356-fit firmwareNov 11, 2024

  • EnGenius EnStation5-AC A8J-ENS500AC 1.0.0 devices allow blind OS command injection via shell metacharacters in the Ping and Speed Test param

    HighCVSS 8.8No exploitEPSS 1%

    Oct 30, 2024

  • EnGenius EWS356-FIR 1.1.30 and earlier devices allow a remote attacker to execute arbitrary OS commands via the Controller connectivity para

    HighCVSS 8.0No exploitEPSS 1%

    engeniustech · ews356-fir firmwareNov 27, 2024

  • EnGenius ENH1350EXT/ENS500-AC/ENS620EXT sn_https command injection

    MediumCVSS 5.1No exploitEPSS 30%

    engeniustech · enh1350ext firmwareNov 24, 2024

  • EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_traceroute command injection

    MediumCVSS 5.1No exploitEPSS 29%

    engeniustech · enh1350ext firmwareNov 25, 2024

  • EnGenius ENH1350EXT/ENS500-AC/ENS620EXT ajax_getChannelList command injection

    MediumCVSS 5.1No exploitEPSS 29%

    engeniustech · enh1350ext firmwareNov 25, 2024

  • EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_iperf command injection

    MediumCVSS 5.1No exploitEPSS 29%

    engeniustech · enh1350ext firmwareNov 25, 2024

  • EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_nslookup command injection

    MediumCVSS 5.1No exploitEPSS 29%

    engeniustech · enh1350ext firmwareNov 25, 2024

  • EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_traceroute6 command injection

    MediumCVSS 5.1No exploitEPSS 29%

    engeniustech · enh1350ext firmwareNov 25, 2024

  • EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_pinginterface command injection

    MediumCVSS 5.1No exploitEPSS 29%

    engeniustech · enh1350ext firmwareNov 25, 2024

  • EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_ping6 command injection

    MediumCVSS 5.1No exploitEPSS 29%

    engeniustech · enh1350ext firmwareNov 25, 2024

  • EnGenius ENH1350EXT/ENS500-AC/ENS620EXT wifi_schedule command injection

    MediumCVSS 5.1No exploitEPSS 27%

    engeniustech · enh1350ext firmwareNov 24, 2024

  • EnGenius ENH500 AP 2T2R V3.0 FW3.7.22 is vulnerable to Incorrect Access Control via the password change function.

    MediumCVSS 6.5No exploitEPSS 0%

    engeniustech · enh500 firmwareMay 19, 2025

  • EnGenius EWS356-Fit devices through 1.1.30 allow a remote attacker to conduct stored XSS attacks via the Wi-Fi SSID parameters.

    MediumCVSS 4.8No exploitEPSS 0%

    engeniustech · ews356-fit firmwareOct 30, 2024