Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-48631 | The EWON FLEXY 202 transmits credentials using a weak encoding method base64. An attacker who is present in the network can sniff the traffic and decode the credentials. |
Solution
HMS Networks recommends users update to firmware version 14.9s2 https://www.hms-networks.com/p/flexy20200-00ma-ewon-flexy-202 .
Workaround
No workaround given by the vendor.
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 17 Oct 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 17 Oct 2024 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The EWON FLEXY 202 transmits credentials using a weak encoding method base64. An attacker who is present in the network can sniff the traffic and decode the credentials. | |
| Title | HMS Networks EWON FLEXY 202 Insufficiently Protected Credentials | |
| Weaknesses | CWE-522 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-10-17T19:22:56.932Z
Reserved: 2024-08-13T17:11:14.080Z
Link: CVE-2024-7755
Updated: 2024-10-17T19:22:52.542Z
Status : Awaiting Analysis
Published: 2024-10-17T19:15:25.513
Modified: 2024-10-18T12:52:33.507
Link: CVE-2024-7755
No data.
OpenCVE Enrichment
No data.
EUVD