Keeper's vulnerability footprint centers on its K5 appliance and associated firmware, a narrowly scoped product line serving as a security gateway or access control platform. The durable signal reflects data-authenticity verification weaknesses in this class of appliance, a structural concern for systems that mediate trust decisions; current severity, exploitation, and exposure details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Keeper over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-16398MEDIUM On Keeper K5 20.1.0.25 and 20.1.0.63 devices, remote code execution can occur by inserting an SD card containing a file named zskj_script_run.sh that executes a reverse shell. | Sep 19, 2019 | 6.8 | 23 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Keeper.
Media articles that mention a CVE ID that affects a product developed by Keeper — matched by CVE ID, not by vendor name.