Vulnerability index

Browse CVEs

7 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Meac300 Fnade4 Firmware HIGH 7.5
CVE-2025-27459

The VNC application stores its passwords encrypted within the registry but uses DES for encryption. As DES is broken, the original passwords can be r…

Mitigation only
Fix from $1,950 2025-07-03
Meac300 Fnade4 Firmware MEDIUM 6.8
CVE-2025-27460

The hard drives of the device are not encrypted using a full volume encryption feature such as BitLocker. This allows an attacker with physical acces…

Mitigation only
Fix from $1,600 2025-07-03
Meac300 Fnade4 Firmware MEDIUM 6.8
CVE-2025-27461

During startup, the device automatically logs in the EPC2 Windows user without requesting a password.

Mitigation only
Fix from $1,600 2025-07-03
Meac300 Fnade4 Firmware CRITICAL 9.8
CVE-2025-27456

The SMB server's login mechanism does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame,…

Mitigation only
Fix from $2,300 2025-07-03
Meac300 Fnade4 Firmware HIGH 7.5
CVE-2025-27457

All communication between the VNC server and client(s) is unencrypted. This allows an attacker to intercept the traffic and obtain sensitive data.

Mitigation only
Fix from $1,950 2025-07-03
Meac300 Fnade4 Firmware HIGH 7.5
CVE-2025-27458

The VNC authentication mechanism bases on a challenge-response system where both server and client use the same password for encryption. The challeng…

Mitigation only
Fix from $1,950 2025-07-03
Wirelesshart Fieldgate Swg70 Firmware MEDIUM 5.3
CVE-2018-16059EPSS 30%

Endress+Hauser WirelessHART Fieldgate SWG70 3.x devices allow Directory Traversal via the fcgi-bin/wgsetcgi filename parameter.

No fix yet
Fix from $1,600 2018-09-07