İçeriğe atla
Noroxi

connectedio kayıtları

connectedio üreticisine ait 8 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
4
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

8 kayıt
  • CVE-2023-33377
    39İzleyin

    Connected IO v2.1.0 and prior has an OS command injection vulnerability in the set firewall command in part of its communication protocol, e

    KritikCVSS 9,8İstismar yokEPSS %2

    connectedio · connected io4 Ağu 2023

  • CVE-2023-33374
    39İzleyin

    Connected IO v2.1.0 and prior has a command as part of its communication protocol allowing the management platform to specify arbitrary OS c

    KritikCVSS 9,8İstismar yokEPSS %1

    connectedio · connected io4 Ağu 2023

  • CVE-2023-33375
    39İzleyin

    Connected IO v2.1.0 and prior has a stack-based buffer overflow vulnerability in its communication protocol, enabling attackers to take cont

    KritikCVSS 9,8İstismar yokEPSS %1

    connectedio · connected io4 Ağu 2023

  • CVE-2023-33378
    39İzleyin

    Connected IO v2.1.0 and prior has an argument injection vulnerability in its AT command message in its communication protocol, enabling atta

    KritikCVSS 9,8İstismar yokEPSS %1

    connectedio · connected io4 Ağu 2023

  • CVE-2023-33376
    39İzleyin

    Connected IO v2.1.0 and prior has an argument injection vulnerability in its iptables command message in its communication protocol, enablin

    KritikCVSS 9,8İstismar yokEPSS %1

    connectedio · connected io4 Ağu 2023

  • CVE-2023-33372
    39İzleyin

    Connected IO v2.1.0 and prior uses a hard-coded username/password pair embedded in their device's firmware used for device communication usi

    KritikCVSS 9,8İstismar yokEPSS %1

    connectedio · connected io4 Ağu 2023

  • CVE-2023-33379
    39İzleyin

    Connected IO v2.1.0 and prior has a misconfiguration in their MQTT broker used for management and device communication, which allows devices

    KritikCVSS 9,8İstismar yokEPSS %1

    connectedio · er2000t-vz-cat1 firmware4 Ağu 2023

  • CVE-2023-33373
    39İzleyin

    Connected IO v2.1.0 and prior keeps passwords and credentials in clear-text format, allowing attackers to exfiltrate the credentials and use

    KritikCVSS 9,8İstismar yokEPSS %0

    connectedio · connected io4 Ağu 2023