ewon
ICS / OT / IoTcommercial
Top products
Latest CVEs
The 7 most recently published vulnerabilities affecting ewon.
- CVE-2019-25470eWON Firmware 12.2-13.0 Authentication Bypass via wsdReadForm7.5
- CVE-2015-7925Cross-site request forgery (CSRF) vulnerability on eWON devices with firmware through 10.1s0 allows remote attackers to hijack the authentication of administrators for requests that trigger firmwar...8.0
- CVE-2015-7929eWON devices with firmware through 10.1s0 support unspecified GET requests, which might allow remote attackers to obtain sensitive information by reading (1) web-server access logs, (2) web-server ...4.3
- CVE-2015-7928eWON devices with firmware before 10.1s0 do not have an off autocomplete attribute for a password field, which makes it easier for remote attackers to obtain access by leveraging an unattended work...8.5
- CVE-2015-7924eWON devices with firmware before 10.1s0 do not trigger the discarding of browser session data in response to a log-off action, which makes it easier for remote attackers to obtain access by levera...8.8
- CVE-2015-7926eWON devices with firmware before 10.1s0 omit RBAC for I/O server information and status requests, which allows remote attackers to obtain sensitive information via an unspecified URL.9.9
- CVE-2015-7927Cross-site scripting (XSS) vulnerability on eWON devices with firmware through 10.1s0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.6.1