Skip to content
Noroxi

eWON records

6 published records for vendor ewon.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

6 records
  • eWON devices with firmware before 10.1s0 omit RBAC for I/O server information and status requests, which allows remote attackers to obtain s

    CriticalCVSS 9.9No exploitEPSS 3%

    ewon · ewon firmwareDec 23, 2015

  • CVE-2015-7924
    36Monitor

    eWON devices with firmware before 10.1s0 do not trigger the discarding of browser session data in response to a log-off action, which makes

    HighCVSS 8.8No exploitEPSS 2%

    ewon · ewon firmwareDec 23, 2015

  • CVE-2015-7928
    35Monitor

    eWON devices with firmware before 10.1s0 do not have an off autocomplete attribute for a password field, which makes it easier for remote at

    HighCVSS 8.5No exploitEPSS 3%

    ewon · ewon firmwareDec 23, 2015

  • CVE-2015-7925
    32Monitor

    Cross-site request forgery (CSRF) vulnerability on eWON devices with firmware through 10.1s0 allows remote attackers to hijack the authentic

    HighCVSS 8.0No exploitEPSS 1%

    ewon · ewon firmwareDec 23, 2015

  • CVE-2015-7927
    25Monitor

    Cross-site scripting (XSS) vulnerability on eWON devices with firmware through 10.1s0 allows remote attackers to inject arbitrary web script

    MediumCVSS 6.1No exploitEPSS 2%

    ewon · ewon firmwareDec 23, 2015

  • CVE-2015-7929
    18Monitor

    eWON devices with firmware through 10.1s0 support unspecified GET requests, which might allow remote attackers to obtain sensitive informati

    MediumCVSS 4.3No exploitEPSS 3%

    ewon · ewon firmwareDec 23, 2015