Vulnerability Details CVE-2024-33892
Insecure Permissions vulnerability in Cosy+ devices running a firmware 21.x below 21.2s10 or a firmware 22.x below 22.1s3 are susceptible to leaking information through cookies. This is fixed in version 21.2s10 and 22.1s3
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 26.8%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2024-33892
-
cpe:2.3:h:hms-networks:ewon_cosy+_4g_apac:-
-
cpe:2.3:h:hms-networks:ewon_cosy+_4g_eu:-
-
cpe:2.3:h:hms-networks:ewon_cosy+_4g_jp:-
-
cpe:2.3:h:hms-networks:ewon_cosy+_4g_na:-
-
cpe:2.3:h:hms-networks:ewon_cosy+_ethernet:-
-
cpe:2.3:h:hms-networks:ewon_cosy+_wifi:-
-
cpe:2.3:o:hms-networks:ewon_cosy+_firmware:21.0s0
-
cpe:2.3:o:hms-networks:ewon_cosy+_firmware:21.0s1
-
cpe:2.3:o:hms-networks:ewon_cosy+_firmware:21.1s1
-
cpe:2.3:o:hms-networks:ewon_cosy+_firmware:21.2s0
-
cpe:2.3:o:hms-networks:ewon_cosy+_firmware:21.2s1
-
cpe:2.3:o:hms-networks:ewon_cosy+_firmware:21.2s2
-
cpe:2.3:o:hms-networks:ewon_cosy+_firmware:21.2s3
-
cpe:2.3:o:hms-networks:ewon_cosy+_firmware:21.2s4
-
cpe:2.3:o:hms-networks:ewon_cosy+_firmware:21.2s7
-
cpe:2.3:o:hms-networks:ewon_cosy+_firmware:21.2s8
-
cpe:2.3:o:hms-networks:ewon_cosy+_firmware:22.0s0
-
cpe:2.3:o:hms-networks:ewon_cosy+_firmware:22.0s1
-
cpe:2.3:o:hms-networks:ewon_cosy+_firmware:22.1s0
-
cpe:2.3:o:hms-networks:ewon_cosy+_firmware:22.1s0pr