Patlite manufactures industrial signaling and notification appliances, including tower light and horn beacon products such as the NBM-D88N and NHL series, where embedded firmware governs alert and status-indication behavior. The identified vulnerabilities cluster around buffer-boundary conditions, insufficient data authentication, and hard-coded credential storage, reflecting common risks in networked embedded devices with minimal update mechanisms. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Patlite over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-18473CRITICAL A hidden backdoor on PATLITE NH-FB Series devices with firmware version 1.45 or earlier, NH-FV Series devices with firmware version 1.10 or earlier, and NBM Series devices with fir | Mar 21, 2019 | 9.8 | 33 | NO | NO |
CVE-2022-38625HIGH Patlite NH-FB v1.46 and below was discovered to contain insufficient firmware validation during the upgrade firmware file upload process. This vulnerability allows authenticated at | Aug 29, 2022 | 8.8 | 28 | NO | NO |
CVE-2022-35911HIGH On Patlite NH-FB series devices through 1.46, remote attackers can cause a denial of service by omitting the query string. NOTE: the vendor's perspective is that "omitting the quer | Jul 27, 2022 | 7.5 | 26 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Patlite.
Media articles that mention a CVE ID that affects a product developed by Patlite — matched by CVE ID, not by vendor name.