vatilon records
2 published records for vendor vatilon.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-319 Cleartext Transmission of Sensitive Information1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
30Monitor | CVE-2025-67160Proof of concept | An issue in Vatilon v1.12.37-20240124 allows attackers to access sensitive directories and files via a directory traversal.vatilon · pa4 firmware · CWE-22 | High7.5 | — | 0.9% | Jan 2, 2026 |
30Monitor | CVE-2025-67159Proof of concept | Vatilon v1.12.37-20240124 was discovered to transmit user credentials in plaintext.vatilon · pa4 firmware · CWE-319 | High7.5 | — | 0.3% | Jan 2, 2026 |
- CVE-2025-6716030Monitor
An issue in Vatilon v1.12.37-20240124 allows attackers to access sensitive directories and files via a directory traversal.
HighCVSS 7.5Proof of conceptEPSS 1%vatilon · pa4 firmwareJan 2, 2026
- CVE-2025-6715930Monitor
Vatilon v1.12.37-20240124 was discovered to transmit user credentials in plaintext.
HighCVSS 7.5Proof of conceptEPSS 0%vatilon · pa4 firmwareJan 2, 2026