Amino's vulnerability profile centers on a narrow line of industrial and embedded networking appliances, including the AK45X, AK5XX, and AK65X product families and their associated firmware. The recurring weakness classes—hard-coded credentials, OS command injection, and injection flaws—reflect the command-interface and system-integration patterns typical of networked control and monitoring equipment; current severity and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Amino over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-10208CRITICAL Command Injection in EntoneWebEngine in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows authenticated remote att | Dec 30, 2020 | 9.9 | 27 | NO | NO |
CVE-2020-10207CRITICAL Use of Hard-coded Credentials in EntoneWebEngine in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows remote attac | Dec 29, 2020 | 9.8 | 25 | NO | NO |
CVE-2020-10210CRITICAL Because of hard-coded SSH keys for the root user in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series, Kami7B, an attacker may remot | Dec 29, 2020 | 9.8 | 24 | NO | NO |
CVE-2020-10209HIGH Command Injection in the CPE WAN Management Protocol (CWMP) registration in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Ka | Dec 30, 2020 | 8.1 | 21 | NO | NO |
CVE-2020-10206MEDIUM Use of a Hard-coded Password in VNCserver in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows local attackers to | Dec 30, 2020 | 4.4 | 14 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Amino.
Media articles that mention a CVE ID that affects a product developed by Amino — matched by CVE ID, not by vendor name.