7 Eleven maintains a narrow portfolio focused on retail and consumer point-of-sale systems, including branded products such as the Hello Cup and LED Message Cup offerings. The vulnerability observations for this vendor reflect its retail-technology domain rather than a broad pattern; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by 7 Eleven over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-34761MEDIUM An unauthenticated attacker within BLE proximity can remotely connect to a 7-Eleven LED Message Cup, Hello Cup 1.3.1 for Android, and bypass the application's client-side chat cens | Jun 28, 2023 | 6.5 | 19 | NO | NO |
CVE-2014-5883MEDIUM The 7-ELEVEN (aka ecowork.seven) application 2.08.000 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and | Sep 12, 2014 | 5.4 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by 7 Eleven.
Media articles that mention a CVE ID that affects a product developed by 7 Eleven — matched by CVE ID, not by vendor name.