Aeon operates a focused product line centered on payment and transaction systems, primarily the Aeon and Waon platforms. The durable signal in its vulnerability profile centers on improper certificate validation issues, reflecting the authentication and trust-chain demands of payment-critical infrastructure; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Aeon over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2005-1019HIGH Buffer overflow in the getConfig function in Aeon 0.2a and earlier allows local users to gain privileges via a long HOME environment variable. | May 2, 2005 | 7.2 | 27 | NO | YES |
CVE-2016-4832MEDIUM WAON "Service Application" for Android 1.4.1 and earlier does not verify SSL certificates. | Apr 21, 2017 | 5.9 | 16 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Aeon.
Media articles that mention a CVE ID that affects a product developed by Aeon — matched by CVE ID, not by vendor name.