Accuenergy manufactures power-monitoring and metering devices such as the AcuVim II and AcuVim IIR meters and their networked firmware variants, products widely deployed in industrial and commercial energy-management infrastructure. The observed vulnerability surface centers on authentication and information-exposure weaknesses including improper credential handling, server-side security enforcement gaps, and unauthorized access to sensitive operational data, reflecting the remote-monitoring and networked configuration demands of these embedded devices. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Accuenergy over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2016-2293HIGH The AXM-NET module in Accuenergy Acuvim II NET Firmware 3.08 and Acuvim IIR NET Firmware 3.08 allows remote attackers to discover settings via a direct request to an unspecified UR | Apr 21, 2016 | 8.6 | 25 | NO | NO |
CVE-2016-2294HIGH The AXM-NET module in Accuenergy Acuvim II NET Firmware 3.08 and Acuvim IIR NET Firmware 3.08 allows remote attackers to discover a cleartext mail-server password via unspecified v | Apr 21, 2016 | 7.5 | 23 | NO | NO |
CVE-2014-2374HIGH The AXN-NET Ethernet module accessory 3.04 for the Accuenergy Acuvim II allows remote attackers to discover passwords and modify settings via vectors involving JavaScript. | Nov 5, 2014 | 7.5 | 23 | NO | NO |
CVE-2014-2373HIGH The AXN-NET Ethernet module accessory 3.04 for the Accuenergy Acuvim II allows remote attackers to discover passwords and modify settings via vectors involving JavaScript. | Nov 5, 2014 | 7.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Accuenergy.
Media articles that mention a CVE ID that affects a product developed by Accuenergy — matched by CVE ID, not by vendor name.