Koyo's vulnerability footprint is concentrated in its H0 and H2 e-commerce platform products, reflecting a narrowly scoped vendor presence. The observed exposure centers on authentication weaknesses, cross-site scripting, and memory-safety issues characteristic of web-application and request-handling layers.
The number and severity of CVEs published that impact products developed by Koyo over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-1805HIGH Buffer overflow in the ECOM Ethernet module in Koyo H0-ECOM, H0-ECOM100, H2-ECOM, H2-ECOM-F, H2-ECOM100, H4-ECOM, H4-ECOM-F, and H4-ECOM100 allows remote attackers to execute arbit | Apr 13, 2012 | 10.0 | 32 | NO | NO |
CVE-2012-1808HIGH The web server in the ECOM Ethernet module in Koyo H0-ECOM, H0-ECOM100, H2-ECOM, H2-ECOM-F, H2-ECOM100, H4-ECOM, H4-ECOM-F, and H4-ECOM100 does not require authentication, which al | Apr 13, 2012 | 10.0 | 30 | NO | NO |
CVE-2012-1806HIGH The ECOM Ethernet module in Koyo H0-ECOM, H0-ECOM100, H2-ECOM, H2-ECOM-F, H2-ECOM100, H4-ECOM, H4-ECOM-F, and H4-ECOM100 supports a maximum password length of 8 bytes, which makes | Apr 13, 2012 | 7.5 | 24 | NO | NO |
CVE-2012-1807MEDIUM Cross-site scripting (XSS) vulnerability in the web server in the ECOM Ethernet module in Koyo H0-ECOM, H0-ECOM100, H2-ECOM, H2-ECOM-F, H2-ECOM100, H4-ECOM, H4-ECOM-F, and H4-ECOM1 | Apr 13, 2012 | 4.3 | 17 | NO | NO |
CVE-2012-1809MEDIUM The web server in the ECOM Ethernet module in Koyo H0-ECOM, H0-ECOM100, H2-ECOM, H2-ECOM-F, H2-ECOM100, H4-ECOM, H4-ECOM-F, and H4-ECOM100 allows remote attackers to cause a denial | Apr 13, 2012 | 5.0 | 16 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Koyo.
Media articles that mention a CVE ID that affects a product developed by Koyo — matched by CVE ID, not by vendor name.