Vulnerability index

Browse CVEs

13 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Ecs Router Controller Ecs Firmware HIGH 7.3
CVE-2021-41302

ECOA BAS controller stores sensitive data (backup exports) in clear-text, thus the unauthenticated attacker can remotely query user password and obta…

Mitigation only
Fix from $1,950 2021-09-30
Ecs Router Controller Ecs Firmware CRITICAL 9.8
CVE-2021-41290

ECOA BAS controller suffers from an arbitrary file write and path traversal vulnerability. Using the POST parameters, unauthenticated attackers can r…

Mitigation only
Fix from $2,300 2021-09-30
Ecs Router Controller Ecs Firmware CRITICAL 9.8
CVE-2021-41296

ECOA BAS controller uses weak set of default administrative credentials that can be easily guessed in remote password attacks and gain full control o…

Mitigation only
Fix from $2,300 2021-09-30
Ecs Router Controller Ecs Firmware CRITICAL 9.8
CVE-2021-41299

ECOA BAS controller is vulnerable to hard-coded credentials within its Linux distribution image, thus remote attackers can obtain administrator’s pri…

Mitigation only
Fix from $2,300 2021-09-30
Ecs Router Controller Ecs Firmware CRITICAL 9.8
CVE-2021-41300

ECOA BAS controller’s special page displays user account and passwords in plain text, thus unauthenticated attackers can access the page and obtain p…

Mitigation only
Fix from $2,300 2021-09-30
Ecs Router Controller Ecs Firmware CRITICAL 9.8
CVE-2021-41301

ECOA BAS controller is vulnerable to configuration disclosure when direct object reference is made to the specific files using an HTTP GET request. T…

Mitigation only
Fix from $2,300 2021-09-30
Ecs Router Controller Ecs Firmware CRITICAL 9.1
CVE-2021-41292

ECOA BAS controller suffers from an authentication bypass vulnerability. An unauthenticated attacker through cookie poisoning can remotely bypass aut…

Mitigation only
Fix from $2,300 2021-09-30
Ecs Router Controller Ecs Firmware CRITICAL 9.1
CVE-2021-41294

ECOA BAS controller suffers from a path traversal vulnerability, causing arbitrary files deletion. Using the specific GET parameter, unauthenticated …

Mitigation only
Fix from $2,300 2021-09-30
Ecs Router Controller Ecs Firmware HIGH 8.8
CVE-2021-41295

ECOA BAS controller has a Cross-Site Request Forgery vulnerability, thus authenticated attacker can remotely place a forged request at a malicious we…

Mitigation only
Fix from $1,950 2021-09-30
Ecs Router Controller Ecs Firmware HIGH 8.8
CVE-2021-41297

ECOA BAS controller is vulnerable to weak access control mechanism allowing authenticated user to remotely escalate privileges by disclosing credenti…

Mitigation only
Fix from $1,950 2021-09-30
Ecs Router Controller Ecs Firmware HIGH 8.8
CVE-2021-41298

ECOA BAS controller is vulnerable to insecure direct object references that occur when the application provides direct access to objects based on use…

Mitigation only
Fix from $1,950 2021-09-30
Ecs Router Controller Ecs Firmware HIGH 7.5
CVE-2021-41291EPSS 83%

ECOA BAS controller suffers from a path traversal content disclosure vulnerability. Using the GET parameter in File Manager, unauthenticated attacker…

Mitigation only
Fix from $1,950 2021-09-30
Ecs Router Controller Ecs Firmware HIGH 7.5
CVE-2021-41293EPSS 21%

ECOA BAS controller suffers from a path traversal vulnerability, causing arbitrary files disclosure. Using the specific POST parameter, unauthenticat…

Mitigation only
Fix from $1,950 2021-09-30