engeniustech kayıtları
engeniustech üreticisine ait 17 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')9
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')6
- CWE-284 Improper Access Control1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
17 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
44Planlayın | CVE-2025-34035Kavram kanıtı | EnGenius EnShare IoT Gigabit Cloud Service Command Injectionengeniustech · esr300 firmware · CWE-78 | Kritik10,0 | — | %12,5 | 23 Haz 2025 |
42Planlayın | CVE-2024-45242İstismar yok | EnGenius ENH1350EXT A8J-ENH1350EXT devices through 3.9.3.2_c1.9.51 allow (blind) OS Command Injection via shell metacharacters to the Ping oCWE-78 | Yüksek7,8 | — | %35,4 | 24 Eki 2024 |
40Planlayın | CVE-2019-11353İstismar yok | The EnGenius EWS660AP router with firmware 2.0.284 allows an attacker to execute arbitrary commands using the built-in ping and traceroute uengeniustech · ews660ap firmware · CWE-78 | Kritik9,8 | — | %3,1 | 9 May 2019 |
39İzleyin | CVE-2024-36061İstismar yok | EnGenius EWS356-FIT devices through 1.1.30 allow blind OS command injection.engeniustech · ews356-fit firmware · CWE-78 | Kritik9,8 | — | %1,1 | 11 Kas 2024 |
35İzleyin | CVE-2024-36060İstismar yok | EnGenius EnStation5-AC A8J-ENS500AC 1.0.0 devices allow blind OS command injection via shell metacharacters in the Ping and Speed Test paramCWE-78 | Yüksek8,8 | — | %1,4 | 30 Eki 2024 |
32İzleyin | CVE-2024-31976İstismar yok | EnGenius EWS356-FIR 1.1.30 and earlier devices allow a remote attacker to execute arbitrary OS commands via the Controller connectivity paraengeniustech · ews356-fir firmware · CWE-78 | Yüksek8,0 | — | %1,0 | 27 Kas 2024 |
29İzleyin | CVE-2024-11652İstismar yok | EnGenius ENH1350EXT/ENS500-AC/ENS620EXT sn_https command injectionengeniustech · enh1350ext firmware · CWE-74 | Orta5,1 | — | %30,2 | 24 Kas 2024 |
29İzleyin | CVE-2024-11653İstismar yok | EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_traceroute command injectionengeniustech · enh1350ext firmware · CWE-74 | Orta5,1 | — | %29,1 | 25 Kas 2024 |
29İzleyin | CVE-2024-11658İstismar yok | EnGenius ENH1350EXT/ENS500-AC/ENS620EXT ajax_getChannelList command injectionengeniustech · enh1350ext firmware · CWE-74 | Orta5,1 | — | %29,1 | 25 Kas 2024 |
29İzleyin | CVE-2024-11659İstismar yok | EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_iperf command injectionengeniustech · enh1350ext firmware · CWE-74 | Orta5,1 | — | %29,1 | 25 Kas 2024 |
29İzleyin | CVE-2024-11657İstismar yok | EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_nslookup command injectionengeniustech · enh1350ext firmware · CWE-74 | Orta5,1 | — | %29,1 | 25 Kas 2024 |
29İzleyin | CVE-2024-11654İstismar yok | EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_traceroute6 command injectionengeniustech · enh1350ext firmware · CWE-74 | Orta5,1 | — | %29,1 | 25 Kas 2024 |
29İzleyin | CVE-2024-11655İstismar yok | EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_pinginterface command injectionengeniustech · enh1350ext firmware · CWE-74 | Orta5,1 | — | %28,8 | 25 Kas 2024 |
29İzleyin | CVE-2024-11656İstismar yok | EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_ping6 command injectionengeniustech · enh1350ext firmware · CWE-74 | Orta5,1 | — | %28,8 | 25 Kas 2024 |
28İzleyin | CVE-2024-11651İstismar yok | EnGenius ENH1350EXT/ENS500-AC/ENS620EXT wifi_schedule command injectionengeniustech · enh1350ext firmware · CWE-74 | Orta5,1 | — | %27,4 | 24 Kas 2024 |
26İzleyin | CVE-2025-28371İstismar yok | EnGenius ENH500 AP 2T2R V3.0 FW3.7.22 is vulnerable to Incorrect Access Control via the password change function.engeniustech · enh500 firmware · CWE-284 | Orta6,5 | — | %0,5 | 19 May 2025 |
19İzleyin | CVE-2024-31975İstismar yok | EnGenius EWS356-Fit devices through 1.1.30 allow a remote attacker to conduct stored XSS attacks via the Wi-Fi SSID parameters.engeniustech · ews356-fit firmware · CWE-79 | Orta4,8 | — | %0,4 | 30 Eki 2024 |
- CVE-2025-3403544Planlayın
EnGenius EnShare IoT Gigabit Cloud Service Command Injection
KritikCVSS 10,0Kavram kanıtıEPSS %13engeniustech · esr300 firmware23 Haz 2025
- CVE-2024-4524242Planlayın
EnGenius ENH1350EXT A8J-ENH1350EXT devices through 3.9.3.2_c1.9.51 allow (blind) OS Command Injection via shell metacharacters to the Ping o
YüksekCVSS 7,8İstismar yokEPSS %3524 Eki 2024
- CVE-2019-1135340Planlayın
The EnGenius EWS660AP router with firmware 2.0.284 allows an attacker to execute arbitrary commands using the built-in ping and traceroute u
KritikCVSS 9,8İstismar yokEPSS %3engeniustech · ews660ap firmware9 May 2019
- CVE-2024-3606139İzleyin
EnGenius EWS356-FIT devices through 1.1.30 allow blind OS command injection.
KritikCVSS 9,8İstismar yokEPSS %1engeniustech · ews356-fit firmware11 Kas 2024
- CVE-2024-3606035İzleyin
EnGenius EnStation5-AC A8J-ENS500AC 1.0.0 devices allow blind OS command injection via shell metacharacters in the Ping and Speed Test param
YüksekCVSS 8,8İstismar yokEPSS %130 Eki 2024
- CVE-2024-3197632İzleyin
EnGenius EWS356-FIR 1.1.30 and earlier devices allow a remote attacker to execute arbitrary OS commands via the Controller connectivity para
YüksekCVSS 8,0İstismar yokEPSS %1engeniustech · ews356-fir firmware27 Kas 2024
- CVE-2024-1165229İzleyin
EnGenius ENH1350EXT/ENS500-AC/ENS620EXT sn_https command injection
OrtaCVSS 5,1İstismar yokEPSS %30engeniustech · enh1350ext firmware24 Kas 2024
- CVE-2024-1165329İzleyin
EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_traceroute command injection
OrtaCVSS 5,1İstismar yokEPSS %29engeniustech · enh1350ext firmware25 Kas 2024
- CVE-2024-1165829İzleyin
EnGenius ENH1350EXT/ENS500-AC/ENS620EXT ajax_getChannelList command injection
OrtaCVSS 5,1İstismar yokEPSS %29engeniustech · enh1350ext firmware25 Kas 2024
- CVE-2024-1165929İzleyin
EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_iperf command injection
OrtaCVSS 5,1İstismar yokEPSS %29engeniustech · enh1350ext firmware25 Kas 2024
- CVE-2024-1165729İzleyin
EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_nslookup command injection
OrtaCVSS 5,1İstismar yokEPSS %29engeniustech · enh1350ext firmware25 Kas 2024
- CVE-2024-1165429İzleyin
EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_traceroute6 command injection
OrtaCVSS 5,1İstismar yokEPSS %29engeniustech · enh1350ext firmware25 Kas 2024
- CVE-2024-1165529İzleyin
EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_pinginterface command injection
OrtaCVSS 5,1İstismar yokEPSS %29engeniustech · enh1350ext firmware25 Kas 2024
- CVE-2024-1165629İzleyin
EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_ping6 command injection
OrtaCVSS 5,1İstismar yokEPSS %29engeniustech · enh1350ext firmware25 Kas 2024
- CVE-2024-1165128İzleyin
EnGenius ENH1350EXT/ENS500-AC/ENS620EXT wifi_schedule command injection
OrtaCVSS 5,1İstismar yokEPSS %27engeniustech · enh1350ext firmware24 Kas 2024
- CVE-2025-2837126İzleyin
EnGenius ENH500 AP 2T2R V3.0 FW3.7.22 is vulnerable to Incorrect Access Control via the password change function.
OrtaCVSS 6,5İstismar yokEPSS %0engeniustech · enh500 firmware19 May 2025
- CVE-2024-3197519İzleyin
EnGenius EWS356-Fit devices through 1.1.30 allow a remote attacker to conduct stored XSS attacks via the Wi-Fi SSID parameters.
OrtaCVSS 4,8İstismar yokEPSS %0engeniustech · ews356-fit firmware30 Eki 2024