KUNBUS records
6 published records for vendor kunbus.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-20 Improper Input Validation1
- CWE-287 Improper Authentication1
- CWE-306 Missing Authentication for Critical Function1
- CWE-312 Cleartext Storage of Sensitive Information1
- CWE-598 Use of HTTP Request With Sensitive Query String1
- CWE-704 Incorrect Type Conversion or Cast1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
54Plan | CVE-2025-41646Proof of concept | RevPi Webstatus application is vulnerable to an authentication bypasskunbus · revpi status · CWE-704 | Critical9.8 | — | 51.3% | Jun 6, 2025 |
39Monitor | CVE-2019-6527No exploit | PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) may allow an attacker to be able to change the passworkunbus · pr100088 modbus gateway firmware · CWE-287 | Critical9.8 | — | 1.2% | Feb 12, 2019 |
36Monitor | CVE-2019-6533No exploit | Registers used to store Modbus values can be read and written from the web interface without authentication in the PR100088 Modbus gateway vkunbus · pr100088 modbus gateway firmware · CWE-306 | Critical9.1 | — | 1.2% | Feb 12, 2019 |
32Monitor | CVE-2019-6531No exploit | An attacker could retrieve passwords from a HTTP GET request from the Kunbus PR100088 Modbus gateway versions prior to Release R02 (or Softwkunbus · pr100088 modbus gateway firmware · CWE-598 | High8.1 | — | 1.0% | Apr 2, 2019 |
28Monitor | CVE-2019-6549No exploit | An attacker could retrieve plain-text credentials stored in a XML file on PR100088 Modbus gateway versions prior to Release R02 (or Softwarekunbus · pr100088 modbus gateway firmware · CWE-312 | High7.2 | — | 0.6% | Feb 12, 2019 |
19Monitor | CVE-2019-6529No exploit | An attacker could specially craft an FTP request that could crash the PR100088 Modbus gateway versions prior to release R02 (or Software Verkunbus · pr100088 modbus gateway firmware · CWE-20 | Medium4.9 | — | 1.0% | Jan 7, 2020 |
- CVE-2025-4164654Plan
RevPi Webstatus application is vulnerable to an authentication bypass
CriticalCVSS 9.8Proof of conceptEPSS 51%kunbus · revpi statusJun 6, 2025
- CVE-2019-652739Monitor
PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) may allow an attacker to be able to change the passwor
CriticalCVSS 9.8No exploitEPSS 1%kunbus · pr100088 modbus gateway firmwareFeb 12, 2019
- CVE-2019-653336Monitor
Registers used to store Modbus values can be read and written from the web interface without authentication in the PR100088 Modbus gateway v
CriticalCVSS 9.1No exploitEPSS 1%kunbus · pr100088 modbus gateway firmwareFeb 12, 2019
- CVE-2019-653132Monitor
An attacker could retrieve passwords from a HTTP GET request from the Kunbus PR100088 Modbus gateway versions prior to Release R02 (or Softw
HighCVSS 8.1No exploitEPSS 1%kunbus · pr100088 modbus gateway firmwareApr 2, 2019
- CVE-2019-654928Monitor
An attacker could retrieve plain-text credentials stored in a XML file on PR100088 Modbus gateway versions prior to Release R02 (or Software
HighCVSS 7.2No exploitEPSS 1%kunbus · pr100088 modbus gateway firmwareFeb 12, 2019
- CVE-2019-652919Monitor
An attacker could specially craft an FTP request that could crash the PR100088 Modbus gateway versions prior to release R02 (or Software Ver
MediumCVSS 4.9No exploitEPSS 1%kunbus · pr100088 modbus gateway firmwareJan 7, 2020