Known vulnerabilities in Enterprise Building Management System
Vendor:
Optergy
Software:
Enterprise Building Management System
Software CPE:
cpe:2.3:a:optergy:enterprise_building_management_system:*:*:*:*:*:*:*:*
Website:
https://optergy.com/
Total vulnerabilities:
8
Public exploits:
4
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.4
Breakdown by Severity Chart
Vulnerabilities (8)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU18839 - Use of Hard-coded Credentials CVE-2019-7279 |
CWE-798 | Medium | 2.4.5 | 19.06.2019 |
SB2019061924 |
||
| #VU18838 - Exposed Dangerous Method or Function CVE-2019-7278 |
CWE-749 | Medium | 2.4.5 | 19.06.2019 |
SB2019061923 |
||
| #VU18837 - Hidden Functionality (Backdoor) CVE-2019-7276 |
CWE-912 | High | 2.4.5 | 19.06.2019 |
SB2019061922 |
||
| #VU18836 - URL Redirection to Untrusted Site ('Open Redirect') CVE-2019-7275 |
CWE-601 | Low | 2.4.5 | 19.06.2019 |
SB2019061921 |
||
| #VU18835 - Exposure of sensitive information to an unauthorized actor CVE-2019-7272 |
CWE-200 | Medium | 2.4.5 | 19.06.2019 |
SB2019061920 |
||
| #VU18834 - Exposure of sensitive information to an unauthorized actor CVE-2019-7277 |
CWE-200 | Medium | 2.4.5 | 19.06.2019 |
SB2019061919 |
||
| #VU18833 - Unrestricted Upload of File with Dangerous Type CVE-2019-7274 |
CWE-434 | High | 2.4.5 | 19.06.2019 |
SB2019061918 |
||
| #VU18832 - Cross-Site Request Forgery (CSRF) CVE-2019-7273 |
CWE-352 | Medium | 2.4.5 | 19.06.2019 |
SB2019061917 |