Insecure Permission vulnerability in Cosy+ devices running a firmware 21.x below 21.2s10 or a firmware 22.x below 22.1s3 are executing several processes with elevated privileges.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 16 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00344}

epss

{'score': 0.00373}


Fri, 20 Jun 2025 18:45:00 +0000

Type Values Removed Values Added
First Time appeared Hms-networks
Hms-networks ewon Cosy\+ 4g Apac
Hms-networks ewon Cosy\+ 4g Eu
Hms-networks ewon Cosy\+ 4g Jp
Hms-networks ewon Cosy\+ 4g Na
Hms-networks ewon Cosy\+ Ethernet
Hms-networks ewon Cosy\+ Firmware
Hms-networks ewon Cosy\+ Wifi
CPEs cpe:2.3:h:hms-networks:ewon_cosy\+_4g_apac:-:*:*:*:*:*:*:*
cpe:2.3:h:hms-networks:ewon_cosy\+_4g_eu:-:*:*:*:*:*:*:*
cpe:2.3:h:hms-networks:ewon_cosy\+_4g_jp:-:*:*:*:*:*:*:*
cpe:2.3:h:hms-networks:ewon_cosy\+_4g_na:-:*:*:*:*:*:*:*
cpe:2.3:h:hms-networks:ewon_cosy\+_ethernet:-:*:*:*:*:*:*:*
cpe:2.3:h:hms-networks:ewon_cosy\+_wifi:-:*:*:*:*:*:*:*
cpe:2.3:o:hms-networks:ewon_cosy\+_firmware:*:*:*:*:*:*:*:*
Vendors & Products Hms-networks
Hms-networks ewon Cosy\+ 4g Apac
Hms-networks ewon Cosy\+ 4g Eu
Hms-networks ewon Cosy\+ 4g Jp
Hms-networks ewon Cosy\+ 4g Na
Hms-networks ewon Cosy\+ Ethernet
Hms-networks ewon Cosy\+ Firmware
Hms-networks ewon Cosy\+ Wifi

Sun, 18 Aug 2024 10:30:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:h:hms-networks:ewon_cosy:-:*:*:*:*:*:*:*
Vendors & Products Hms-networks
Hms-networks ewon Cosy
References
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 12 Aug 2024 15:30:00 +0000


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-18T09:02:45.273Z

Reserved: 2024-04-28T00:00:00

Link: CVE-2024-33894

cve-icon Vulnrichment

Updated: 2024-08-18T09:02:45.273Z

cve-icon NVD

Status : Analyzed

Published: 2024-08-02T18:16:18.837

Modified: 2025-06-20T18:10:12.833

Link: CVE-2024-33894

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.