CVE-2015-7926 describes a critical vulnerability in eWON devices running firmware versions prior to 10.1s0, allowing remote attackers to bypass role-based access control (RBAC) and access sensitive I/O server information and status. With a CVSS v3 score of 9.9 (CRITICAL), this flaw is easily exploitable over the network with low attack complexity and can lead to high impact across confidentiality, integrity, and availability. While no public exploit code or active exploitation has been observed, its high FAUCET Risk Score and mention in security media indicate its potential severity and the importance of patching.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 10.0s0CPE matchmatch criteria | cpe:2.3:o:ewon:ewon_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 1.0 Bluesky, 0.5 Mastodon, and 1.6 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.