Записи knx
4 опубликованных записей вендора knx.
Профиль для исследователя
- Попали в KEV
- 1 · 25 %
- С эксплойтом
- 1 · 25 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- 1051 дн.
Повторяющиеся классы
- CWE-798 Use of Hard-coded Credentials2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-645 Overly Restrictive Account Lockout Mechanism1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
4 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
60На этой неделе | CVE-2023-4346Готовый эксплойт | KNX devices that use KNX Connection Authorization and support Option 1 are, depending on the implementation, vulnerable to being locked andknx · connection authorization · CWE-645 | Высокая7,5 | KEV | 1,3 % | 29 авг. 2023 г. |
41В плане | CVE-2015-8299Proof of concept | Buffer overflow in the Group messages monitor (Falcon) in KNX ETS 4.1.5 (Build 3246) allows remote attackers to execute arbitrary code via aknx · ets · CWE-119 | Критическая9,8 | — | 6,2 % | 29 авг. 2017 г. |
35Наблюдать | CVE-2021-36799Proof of concept | KNX ETS5 through 5.7.6 uses the hard-coded password ETS5Password, with a salt value of Ivan Medvedev, allowing local users to read project iknx · engineering tool software 5 · CWE-798 | Высокая8,8 | — | 0,4 % | 19 июл. 2021 г. |
22Наблюдать | CVE-2021-43575Эксплойта нет | KNX ETS6 through 6.0.0 uses the hard-coded password ETS5Password, with a salt value of Ivan Medvedev, allowing local users to read project iknx · engineering tool software 6 · CWE-798 | Средняя5,5 | — | 0,3 % | 9 нояб. 2021 г. |
- CVE-2023-434660На этой неделе
KNX devices that use KNX Connection Authorization and support Option 1 are, depending on the implementation, vulnerable to being locked and
ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 1 %knx · connection authorization29 авг. 2023 г.
- CVE-2015-829941В плане
Buffer overflow in the Group messages monitor (Falcon) in KNX ETS 4.1.5 (Build 3246) allows remote attackers to execute arbitrary code via a
КритическаяCVSS 9,8Proof of conceptEPSS 6 %knx · ets29 авг. 2017 г.
- CVE-2021-3679935Наблюдать
KNX ETS5 through 5.7.6 uses the hard-coded password ETS5Password, with a salt value of Ivan Medvedev, allowing local users to read project i
ВысокаяCVSS 8,8Proof of conceptEPSS 0 %knx · engineering tool software 519 июл. 2021 г.
- CVE-2021-4357522Наблюдать
KNX ETS6 through 6.0.0 uses the hard-coded password ETS5Password, with a salt value of Ivan Medvedev, allowing local users to read project i
СредняяCVSS 5,5Эксплойта нетEPSS 0 %knx · engineering tool software 69 нояб. 2021 г.