Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ECOA | ECS Router Controller ECS (FLASH) | next of 0 ~ unspecified | - | |
| ECOA | RiskBuster Terminator E6L45 | next of 0 ~ unspecified | - | |
| ECOA | RiskBuster System RB 3.0.0 | next of 0 ~ unspecified | - | |
| ECOA | RiskBuster System TRANE 1.0 | next of 0 ~ unspecified | - | |
| ECOA | Graphic Control Software | next of 0 ~ unspecified | - | |
| ECOA | SmartHome II E9246 | next of 0 ~ unspecified | - | |
| ECOA | RiskTerminator | next of 0 ~ unspecified | - |
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-41290 | 9.8 CRITICAL | ECOA BAS controller - Path Traversal-1 |
| CVE-2021-41292 | 9.8 CRITICAL | ECOA BAS controller - Broken Authentication |
| CVE-2021-41296 | 9.8 CRITICAL | ECOA BAS controller - Weak Password Requirements |
| CVE-2021-41299 | 9.8 CRITICAL | ECOA BAS controller - Use of Hard-coded Credentials |
| CVE-2021-41300 | 9.8 CRITICAL | ECOA BAS controller - Insufficiently Protected Credentials-2 |
| CVE-2021-41301 | 9.8 CRITICAL | ECOA BAS controller - Exposure of Sensitive Information to an Unauthorized Actor |
| CVE-2021-41294 | 9.1 CRITICAL | ECOA BAS controller - Path Traversal-4 |
| CVE-2021-41295 | 8.8 HIGH | ECOA BAS controller - Cross-Site Request Forgery (CSRF) |
| CVE-2021-41298 | 8.8 HIGH | ECOA BAS controller - Improper Access Control |
| CVE-2021-41291 | 7.5 HIGH | ECOA BAS controller - Path Traversal-1 |
| CVE-2021-41293 | 7.5 HIGH | ECOA BAS controller - Path Traversal-3 |
| CVE-2021-41302 | 7.3 HIGH | ECOA BAS controller - Missing Encryption of Sensitive Data |
No comments yet