Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Aten

First CVE: May 27, 2009Active for: 17 yearsTotal CVEs: 27
30.8
VTI Score
Low

Aten manufactures a focused portfolio of rack-level power-distribution and IP-KVM switching products designed for data-center infrastructure management, presenting an embedded but strategically important attack surface within server and facility environments. The recurring vulnerability classes across its disclosed disclosures—improper access control, missing authorization, insufficiently protected credentials, and resource-allocation weaknesses—reflect the authentication and privilege boundaries that gate access to critical facility and server-management functions. Defenders managing Aten equipment in production should prioritize network isolation of management interfaces and treat authentication weaknesses in this product class as high-risk, since compromise can enable lateral movement and unauthorized infrastructure manipulation. Live severity, exploitation, and current exposure counts are shown alongside this summary.

FAUCET AI Generated
27
Total CVEs
More Total CVEs than 97% of tracked vendors
0.4
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 4% of tracked vendors
7.3
Avg CVSS Score
Higher Avg CVSS Score than 55% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Aten over time

Volume of CVEsAvg CVSS Base Score
First CVE
May 27, 2009
17 years ago
Most Recent CVE
Jun 24, 2026
30 days ago

Products(11 total)

Top CVEs

Signals from CVEs in this vendor scope (27 CVEs).

27 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-9776HIGH
ATEN Unizon writeFileToHttpServletResponse Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on
Jun 24, 20267.533NONO
CVE-2026-9779HIGH
ATEN Unizon doCryptoHugeFileToFile Improper Verification of Cryptographic Signature Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbit
Jun 24, 20267.232NONO
CVE-2026-9778HIGH
ATEN Unizon ImportDeviceList Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations
Jun 24, 20267.231NONO
CVE-2026-9777HIGH
ATEN Unizon restoreDB Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of ATE
Jun 24, 20267.231NONO
CVE-2026-9775MEDIUM
ATEN Unizon uploadSSL Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installations of A
Jun 24, 20266.530NONO
CVE-2026-9774MEDIUM
ATEN Unizon updateLicense Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installations
Jun 24, 20266.530NONO
CVE-2025-6685HIGH
ATEN eco DC Missing Authorization Privilege Escalation Vulnerability. This vulnerability allows remote attackers to escalate privileges on affected installations of ATEN eco DC. Au
Sep 2, 20258.827NONO
CVE-2023-43845CRITICAL
Aten PE6208 2.3.228 and 2.4.232 have default credentials for the privileged telnet account. The user is not asked to change the credentials after first login. If not changed, attac
May 28, 20249.826NONO
CVE-2009-1477HIGH
The https web interfaces on the ATEN KH1516i IP KVM switch with firmware 1.0.063, the KN9116 IP KVM switch with firmware 1.1.104, and the PN9108 power-control unit have a hardcoded
May 27, 200910.026NONO
CVE-2009-1473HIGH
The (1) Windows and (2) Java client programs for the ATEN KH1516i IP KVM switch with firmware 1.0.063 and the KN9116 IP KVM switch with firmware 1.1.104 do not properly use RSA cry
May 27, 200910.025NONO
View all 27 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products27 CVEs
33%
63%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network19 (70.4%)
Unknown5 (18.5%)
Physical0 (0.0%)
Adjacent Network3 (11.1%)
Attack Complexity
Low22 (81.5%)
High0 (0.0%)
Unknown5 (18.5%)
User Interaction
None21 (77.8%)
Unknown5 (18.5%)
Required1 (3.7%)
Privileges Required
Low5 (18.5%)
High6 (22.2%)
None11 (40.7%)
Unknown5 (18.5%)

Exploit Exposure

Signals from CVEs in this vendor scope (27 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Aten.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Aten — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Aten's Products

View all 3 CNAs →

Top CWEs