VYPR

C More Ea9 T15cl R Firmware

by Automationdirect

CVEs (6)

  • CVE-2020-6969CriFeb 5, 2020
    risk 0.64cvss 9.8epss 0.02

    It is possible to unmask credentials and other sensitive information on “unprotected” project files, which may allow an attacker to remotely access the C-More Touch Panels EA9 series: firmware versions prior to 6.53 and manipulate system configurations.

  • CVE-2024-11611HigJan 30, 2025
    risk 0.51cvss 7.8epss 0.00

    AutomationDirect C-More EA9 EAP9 File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of AutomationDirect C-More EA9. User interaction is required to exploit this…

  • CVE-2024-11610HigJan 30, 2025
    risk 0.51cvss 7.8epss 0.00

    AutomationDirect C-More EA9 EAP9 File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of AutomationDirect C-More EA9. User interaction is required to exploit this…

  • CVE-2024-11609HigJan 30, 2025
    risk 0.51cvss 7.8epss 0.00

    AutomationDirect C-More EA9 EAP9 File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of AutomationDirect C-More EA9. User interaction is required to exploit…

  • CVE-2022-2006HigAug 31, 2022
    risk 0.51cvss 7.8epss 0.00

    AutomationDirect DirectLOGIC has a DLL vulnerability in the install directory that may allow an attacker to execute code during the installation process. This issue affects: AutomationDirect C-more EA9 EA9-T6CL versions prior to 6.73; EA9-T6CL-R versions prior to 6.73; EA9-T7CL…

  • CVE-2022-2005HigAug 31, 2022
    risk 0.49cvss 7.5epss 0.00

    AutomationDirect C-more EA9 HTTP webserver uses an insecure mechanism to transport credentials from client to web server, which may allow an attacker to obtain the login credentials and login as a valid user. This issue affects: AutomationDirect C-more EA9 EA9-T6CL versions…

VYPR — Vulnerability Intelligence