Inim develops a focused line of home and building automation control systems, primarily the SmartLiving product family, that integrate networked appliances and remote management interfaces. The durable vulnerability signal centers on command-injection, server-side request forgery, and hard-coded credential weaknesses, reflecting the authentication and input-handling demands of embedded automation controllers exposed to remote administration; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Inim over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-21995CRITICAL Inim Electronics Smartliving SmartLAN/G/SI <=6.x uses default hardcoded credentials. An attacker could exploit this to gain Telnet, SSH and FTP access to the system. | Apr 29, 2021 | 9.8 | 31 | NO | NO |
CVE-2020-21992HIGH Inim Electronics SmartLiving SmartLAN/G/SI <=6.x suffers from an authenticated remote command injection vulnerability. The issue exist due to the 'par' POST parameter not being san | Apr 29, 2021 | 8.8 | 28 | NO | NO |
CVE-2020-22002HIGH An Unauthenticated Server-Side Request Forgery (SSRF) vulnerability exists in Inim Electronics Smartliving SmartLAN/G/SI <=6.x within the GetImage functionality. The application pa | Apr 29, 2021 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Inim.
Media articles that mention a CVE ID that affects a product developed by Inim — matched by CVE ID, not by vendor name.