Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Eibport Firmware MEDIUM 6.5
CVE-2021-28914

BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow the user to set a weak password because the strength is shown in configuration tool, but fi…

Fix: 3.9.1+
Fix from $1,600 2021-09-09
Eibport Firmware CRITICAL 9.8
CVE-2021-28913

BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow unauthenticated attackers access to /webif/SecurityModule to validate the so called and har…

Fix: 3.9.1+
Fix from $2,300 2021-09-09
Eibport Firmware CRITICAL 9.8
CVE-2021-28909

BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow unauthenticated attackers to access uncontrolled the login service at /webif/SecurityModule…

Fix: 3.9.1+
Fix from $2,300 2021-09-09
Eibport Firmware CRITICAL 9.8
CVE-2021-28911

BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow unauthenticated attackers access to /tmp path which contains some sensitive data (e.g. devi…

Fix: 3.9.1+
Fix from $2,300 2021-09-09
Eibport Firmware HIGH 7.5
CVE-2021-28910

BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 contains basic SSRF vulnerability. It allow unauthenticated attackers to request to any internal …

Fix: 3.9.1+
Fix from $1,950 2021-09-09
Eibport Firmware HIGH 7.2
CVE-2021-28912

BAB TECHNOLOGIE GmbH eibPort V3. Each device has its own unique hard coded and weak root SSH key passphrase known as 'eibPort string'. This is usable…

Fix: 3.9.1+
Fix from $1,950 2021-09-09
Eibport Firmware HIGH 7.5
CVE-2020-24573

BAB TECHNOLOGIE GmbH eibPort V3 prior to 3.8.3 devices allow denial of service (Uncontrolled Resource Consumption) via requests to the lighttpd compo…

Fix: 3.8.3+
Fix from $1,950 2020-11-12