VYPR
Vendor

Panasonic

Products
51
CVEs
46
Across products
66
Status
Private

Products

51
View all 51 products →

Recent CVEs

46
View all 46 CVEs →
  • CVE-2021-20623CriFeb 5, 2021
    risk 0.64cvss 9.8epss 0.03

    Video Insight VMS versions prior to 7.8 allows a remote attacker to execute arbitrary code with the system user privilege by sending a specially crafted request.

  • CVE-2020-11716CriMay 20, 2020
    risk 0.64cvss 9.8epss 0.01

    Panasonic P110, Eluga Z1 Pro, Eluga X1, and Eluga X1 Pro devices through 2020-04-10 have Insecure Permissions. NOTE: the vendor states that all affected products are at "End-of-software-support."

  • CVE-2019-5997CriMay 20, 2020
    risk 0.64cvss 9.8epss 0.02

    Video Insight VMS versions prior to 7.6.1 allow remote attackers to conduct code injection attacks via unspecified vectors.

  • CVE-2020-11715CriMay 19, 2020
    risk 0.64cvss 9.8epss 0.01

    Panasonic P99 devices through 2020-04-10 have Incorrect Access Control. NOTE: the vendor states that all affected products are at "End-of-software-support."

  • CVE-2023-28727CriMar 31, 2023
    risk 0.62cvss 9.6epss 0.00

    Panasonic AiSEG2 versions 2.00J through 2.93A allows adjacent attackers bypass authentication due to mishandling of X-Forwarded-For headers.

  • CVE-2019-5996HigSep 12, 2019
    risk 0.57cvss 8.8epss 0.02

    SQL injection vulnerability in the Video Insight VMS 7.3.2.5 and earlier allows remote authenticated attackers to execute arbitrary SQL commands via unspecified vectors.

  • CVE-2018-0676HigJan 9, 2019
    risk 0.57cvss 8.8epss 0.01

    BN-SDWBP3 firmware version 1.0.9 and earlier allows an attacker on the same network segment to bypass authentication to access to the management screen and execute an arbitrary command via unspecified vectors.

  • CVE-2017-2133HigOct 20, 2017
    risk 0.57cvss 8.8epss 0.01

    SQL injection vulnerability in Panasonic KX-HJB1000 Home unit devices with firmware GHX1YG 14.50 or HJB1000_4.47 allows authenticated attackers to execute arbitrary SQL commands via unspecified vectors.

  • CVE-2023-3472HigSep 6, 2023
    risk 0.56cvss 8.6epss 0.00

    Use after free vulnerability in Panasonic KW Watcher versions 1.00 through 2.82 may allow attackers to execute arbitrary code.

  • CVE-2023-3471HigSep 6, 2023
    risk 0.56cvss 8.6epss 0.00

    Buffer overflow vulnerability in Panasonic KW Watcher versions 1.00 through 2.82 may allow attackers to execute arbitrary code.

  • CVE-2025-11223HigOct 3, 2025
    risk 0.51cvss 7.8epss 0.00

    Installer of Panasonic AutoDownloader version 1.2.8 contains an issue with the DLL search path, which may lead to loading a crafted DLL file in the same directory.

  • CVE-2024-7013HigAug 21, 2024
    risk 0.51cvss 7.8epss 0.00

    Stack-based buffer overflow in Control FPWIN Pro version 7.7.2.0 and all previous versions may allow attackers to execute arbitrary code via a specially crafted project file.

  • CVE-2023-6315HigDec 19, 2023
    risk 0.51cvss 7.8epss 0.00

    Out-of-bouds read vulnerability in FPWin Pro version 7.7.0.0 and all previous versions may allow attackers to execute arbitrary code via a specially crafted project file.

  • CVE-2023-6314HigDec 19, 2023
    risk 0.51cvss 7.8epss 0.00

    Stack-based buffer overflow in FPWin Pro version 7.7.0.0 and all previous versions may allow attackers to execute arbitrary code via a specially crafted project file.

  • CVE-2023-28730HigJul 21, 2023
    risk 0.51cvss 7.8epss 0.00

    A memory corruption vulnerability Panasonic Control FPWIN Pro versions 7.6.0.3 and all previous versions may allow arbitrary code execution when opening specially crafted project files.

  • CVE-2023-28729HigJul 21, 2023
    risk 0.51cvss 7.8epss 0.00

    A type confusion vulnerability in Panasonic Control FPWIN Pro versions 7.6.0.3 and all previous versions may allow arbitrary code execution when opening specially crafted project files.

  • CVE-2023-28728HigJul 21, 2023
    risk 0.51cvss 7.8epss 0.00

    A stack-based buffer overflow in Panasonic Control FPWIN Pro versions 7.6.0.3 and all previous versions may allow arbitrary code execution when opening specially crafted project files.

  • CVE-2020-16236HigJan 26, 2021
    risk 0.51cvss 7.8epss 0.01

    FPWIN Pro is vulnerable to an out-of-bounds read vulnerability when a user opens a maliciously crafted project file, which may allow an attacker to remotely execute arbitrary code.

  • CVE-2019-15429HigNov 14, 2019
    risk 0.51cvss 7.8epss 0.00

    The Panasonic ELUGA_I9 Android device with a build fingerprint of Panasonic/ELUGA_I9/ELUGA_I9:7.0/NRD90M/1501740649:user/release-keys contains a pre-installed app with a package name of com.ovvi.modem app (versionCode=1, versionName=1) that allows unauthorized…

  • CVE-2019-6532HigJun 7, 2019
    risk 0.51cvss 7.8epss 0.04

    Panasonic FPWIN Pro version 7.3.0.0 and prior allows attacker-created project files to be loaded by an authenticated user triggering incompatible type errors because the resource does not have expected properties. This may lead to remote code execution.