Eviewgps develops GPS tracking devices, notably the EV-07S tracker and related firmware, serving a niche in mobile asset monitoring and location services. The vendor's observed vulnerability profile centers on authentication weaknesses, buffer boundary issues, and encryption implementation gaps that are characteristic of embedded tracking and IoT device firmware. Current exploitation activity, severity breakdown, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Eviewgps over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-5237HIGH Due to a lack of authentication, an unauthenticated user who knows the Eview EV-07S GPS Tracker's phone number can revert the device to a factory default configuration with an SMS | Mar 27, 2017 | 7.5 | 25 | NO | NO |
CVE-2017-5239HIGH Due to a lack of standard encryption when transmitting sensitive information over the internet to a centralized monitoring service, the Eview EV-07S GPS Tracker discloses personall | Mar 27, 2017 | 7.5 | 24 | NO | NO |
CVE-2017-5238MEDIUM Due to a lack of bounds checking, several input configuration fields for the Eview EV-07S GPS Tracker will overflow data stored in one variable to another, overwriting the data of | Mar 27, 2017 | 5.3 | 15 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Eviewgps.
Media articles that mention a CVE ID that affects a product developed by Eviewgps — matched by CVE ID, not by vendor name.