easyio CVE Vulnerabilities & CVE List (3)

Products (CPE): — CVEs: 3

easyio vulnerability overview

Aggregates CVE and security vulnerability intelligence across all easyio-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk cross-site scripting and related problems; some flaws may lead to vendor impact session compromise, affecting vendor surface production workloads scenarios.

Vulnerability distribution trend (last 24 months)

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2018-15820 EasyIO EasyIO-30P devices before 2.0.5.27 allow XSS via the dev.htm GDN parameter. [email protected] 6.1 0.23% 2020-03-02 2024-11-21
CVE-2018-15819 EasyIO EasyIO-30P devices before 2.0.5.27 have Incorrect Access Control, related to webuser.js. [email protected] 7.5 0.69% 2020-03-02 2024-11-21
CVE-2015-3974 EasyIO EasyIO-30P-SF controllers with firmware before 0.5.21 and 2.x before 2.0.5.21, as used in Accutrol, Bar-Tech Automation, Infocon/EasyIO, Honeywell Automation India, Johnson Controls, SyxthSENSE, Transformative Wave Technologies, Tridium Asia Pacific, and Tridium Europe products, have a hardcoded password, which makes it easier for remote attackers to obtain access via unspecified vectors. [email protected] 9.0 0.67% 2015-09-28 2026-05-06
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence