Pyres develops a narrow line of terminal equipment products, particularly the Termod4 and its firmware, that exhibit vulnerability patterns centered on path-traversal flaws and cryptographic-algorithm weaknesses. These issues are characteristic of embedded device codebases where access-control boundaries and legacy cipher choices present recurring structural risks; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pyres over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-23160HIGH Remote code execution in Pyrescom Termod4 time management devices before 10.04k allows authenticated remote attackers to arbitrary commands as root on the devices. | Jan 26, 2021 | 8.8 | 29 | NO | NO |
CVE-2020-23162HIGH Sensitive information disclosure and weak encryption in Pyrescom Termod4 time management devices before 10.04k allows remote attackers to read a session-file and obtain plain-text | Jan 26, 2021 | 7.5 | 24 | NO | NO |
CVE-2020-23161MEDIUM Local file inclusion in Pyrescom Termod4 time management devices before 10.04k allows authenticated remote attackers to traverse directories and read sensitive files via the Mainte | Jan 26, 2021 | 6.5 | 18 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pyres.
Media articles that mention a CVE ID that affects a product developed by Pyres — matched by CVE ID, not by vendor name.