Vulnerabilities > Echelon

DATE CVE VULNERABILITY TITLE RISK
2023-02-13 CVE-2022-3089 Cleartext Storage of Sensitive Information vulnerability in Echelon I.Lon Vision 2.2
Echelon SmartServer 2.2 with i.LON Vision 2.2 stores cleartext credentials in a file, which could allow an attacker to obtain cleartext usernames and passwords of the SmartServer.
network
low complexity
echelon CWE-312
critical
9.8
2018-07-24 CVE-2018-8859 Improper Authentication vulnerability in Echelon products
Echelon SmartServer 1 all versions, SmartServer 2 all versions prior to release 4.11.007, i.LON 100 all versions, and i.LON 600 all versions.
network
low complexity
echelon CWE-287
critical
9.8
2018-07-24 CVE-2018-8855 Cleartext Transmission of Sensitive Information vulnerability in Echelon products
Echelon SmartServer 1 all versions, SmartServer 2 all versions prior to release 4.11.007, i.LON 100 all versions, and i.LON 600 all versions.
network
low complexity
echelon CWE-319
critical
9.8
2018-07-24 CVE-2018-8851 Insufficiently Protected Credentials vulnerability in Echelon products
Echelon SmartServer 1 all versions, SmartServer 2 all versions prior to release 4.11.007, i.LON 100 all versions, and i.LON 600 all versions.
network
low complexity
echelon CWE-522
critical
9.8
2018-07-24 CVE-2018-10627 Information Exposure vulnerability in Echelon products
Echelon SmartServer 1 all versions, SmartServer 2 all versions prior to release 4.11.007, i.LON 100 all versions, and i.LON 600 all versions.
network
low complexity
echelon CWE-200
critical
9.8