Vulnerabilities > HMS Networks > Ewon Cosy Firmware

DATE CVE VULNERABILITY TITLE RISK
2020-09-18 CVE-2020-16230 Unspecified vulnerability in Hms-Networks Ewon Cosy Firmware and Ewon Flexy Firmware
All version of Ewon Flexy and Cosy prior to 14.1 use wildcards such as (*) under which domains can request resources.
local
low complexity
hms-networks
2.1
2020-04-08 CVE-2020-10633 Cross-site Scripting vulnerability in Hms-Networks Ewon Cosy Firmware and Ewon Flexy Firmware
A non-persistent XSS (cross-site scripting) vulnerability exists in eWON Flexy and Cosy (all firmware versions prior to 14.1s0).
4.3