oryx-embedded records
3 published records for vendor oryx-embedded.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 66.7%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-20 Improper Input Validation1
- CWE-330 Use of Insufficiently Random Values1
- CWE-354 Improper Validation of Integrity Check Value1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
51Plan | CVE-2023-48795Proof of concept | The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypasssh · ssh · CWE-354 | Medium5.9 | — | 93.5% | Dec 18, 2023 |
39Monitor | CVE-2020-27631No exploit | In Oryx CycloneTCP 1.9.6, TCP ISNs are improperly random.oryx-embedded · cyclonetcp · CWE-330 | Critical9.8 | — | 1.1% | Oct 10, 2023 |
30Monitor | CVE-2021-26788No exploit | Oryx Embedded CycloneTCP 1.7.6 to 2.0.0, fixed in 2.0.2, is affected by incorrect input validation, which may cause a denial of service (DoSoryx-embedded · cyclonetcp · CWE-20 | High7.5 | — | 1.2% | Mar 8, 2021 |
- CVE-2023-4879551Plan
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypas
MediumCVSS 5.9Proof of conceptEPSS 94%ssh · sshDec 18, 2023
- CVE-2020-2763139Monitor
In Oryx CycloneTCP 1.9.6, TCP ISNs are improperly random.
CriticalCVSS 9.8No exploitEPSS 1%oryx-embedded · cyclonetcpOct 10, 2023
- CVE-2021-2678830Monitor
Oryx Embedded CycloneTCP 1.7.6 to 2.0.0, fixed in 2.0.2, is affected by incorrect input validation, which may cause a denial of service (DoS
HighCVSS 7.5No exploitEPSS 1%oryx-embedded · cyclonetcpMar 8, 2021