Krontech's vulnerability footprint centers on a single industrial connectivity product, SingleConnect, which facilitates networked access and control in specialized operational environments. The recurring exposure involves authorization-handling weaknesses, including missing authorization checks and authorization bypass through user-controlled mechanisms, which are characteristic of access-control implementation challenges in industrial networking appliances. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Krontech over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-0882HIGH Improper Input Validation, Authorization Bypass Through User-Controlled Key vulnerability in Kron Tech Single Connect on Windows allows Privilege Abuse. This issue affects Single C | Feb 17, 2023 | 8.8 | 27 | NO | NO |
CVE-2021-44793HIGH Single Connect does not perform an authorization check when using the sc-reports-ui" module. A remote attacker could exploit this vulnerability to access the device configuration p | Jan 27, 2022 | 8.6 | 27 | NO | NO |
CVE-2021-44795HIGH Single Connect does not perform an authorization check when using the "sc-assigned-credential-ui" module. A remote attacker could exploit this vulnerability to modify users permiss | Jan 27, 2022 | 7.5 | 25 | NO | NO |
CVE-2021-44794MEDIUM Single Connect does not perform an authorization check when using the "sc-diagnostic-ui" module. A remote attacker could exploit this vulnerability to access the device information | Jan 27, 2022 | 5.3 | 20 | NO | NO |
CVE-2021-44792MEDIUM Single Connect does not perform an authorization check when using the "log-monitor" module. A remote attacker could exploit this vulnerability to access the logging interface. The | Jan 27, 2022 | 5.3 | 20 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Krontech.
Media articles that mention a CVE ID that affects a product developed by Krontech — matched by CVE ID, not by vendor name.