Fimer maintains a focused product portfolio centered on the Aurora Vision platform, which serves solar and renewable-energy monitoring and control applications. The observed vulnerability exposure clusters around authentication-layer weaknesses, including improper authentication mechanisms and insufficient restrictions on repeated login attempts, which reflect the access-control demands of networked energy-management systems. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Fimer over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-33209MEDIUM An issue was discovered in Fimer Aurora Vision before 2.97.10. The response to a failed login attempt discloses whether the username or password is wrong, helping an attacker to en | Nov 3, 2021 | 5.3 | 19 | NO | NO |
CVE-2021-33210MEDIUM An issue was discovered in Fimer Aurora Vision before 2.97.10. An attacker can (in the WebUI) obtain plant information without authentication by reading the response of APIs from a | Nov 3, 2021 | 4.3 | 17 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Fimer.
Media articles that mention a CVE ID that affects a product developed by Fimer — matched by CVE ID, not by vendor name.