VYPR
Vendor

Amino Communications

Products
7
CVEs
5
Across products
11
Status
Private

Products

7

Recent CVEs

5
  • CVE-2020-10208Dec 29, 2020
    risk 0.01cvss epss 0.08

    Command Injection in EntoneWebEngine in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows authenticated remote attackers to execute arbitrary commands with root user privileges.

  • CVE-2020-10206Dec 29, 2020
    risk 0.00cvss epss 0.00

    Use of a Hard-coded Password in VNCserver in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows local attackers to view and interact with the video output of the device.

  • CVE-2020-10209Dec 29, 2020
    risk 0.00cvss epss 0.03

    Command Injection in the CPE WAN Management Protocol (CWMP) registration in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows man-in-the-middle attackers to execute arbitrary commands with root level privileges.

  • CVE-2020-10207Dec 29, 2020
    risk 0.00cvss epss 0.04

    Use of Hard-coded Credentials in EntoneWebEngine in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows remote attackers to retrieve and modify the device settings.

  • CVE-2020-10210Dec 29, 2020
    risk 0.00cvss epss 0.00

    Because of hard-coded SSH keys for the root user in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series, Kami7B, an attacker may remotely log in through SSH.