Vulnerabilities
Vulnerable Software
Easyio:  Security Vulnerabilities
EasyIO EasyIO-30P devices before 2.0.5.27 have Incorrect Access Control, related to webuser.js.
CVSS Score
7.5
EPSS Score
0.007
Published
2020-03-02
EasyIO EasyIO-30P devices before 2.0.5.27 allow XSS via the dev.htm GDN parameter.
CVSS Score
6.1
EPSS Score
0.002
Published
2020-03-02
EasyIO EasyIO-30P-SF controllers with firmware before 0.5.21 and 2.x before 2.0.5.21, as used in Accutrol, Bar-Tech Automation, Infocon/EasyIO, Honeywell Automation India, Johnson Controls, SyxthSENSE, Transformative Wave Technologies, Tridium Asia Pacific, and Tridium Europe products, have a hardcoded password, which makes it easier for remote attackers to obtain access via unspecified vectors.
CVSS Score
9.0
EPSS Score
0.004
Published
2015-09-28


Contact Us

Shodan ® - All rights reserved