Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Zingbox

First CVE: Oct 9, 2019Active for: 7 yearsTotal CVEs: 11
51.6
VTI Score
TOP TARGET

Zingbox develops the Inspector platform, a network assessment and device-visibility tool deployed in healthcare and critical infrastructure environments where comprehensive endpoint and IoT asset discovery is essential. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and recur through weakness classes centered on authentication and credential handling—including hard-coded credentials, authentication bypass via spoofing, and cleartext storage—alongside input-validation and command-injection flaws that reflect the product's role parsing and managing untrusted device communications. Defenders should prioritize patching this vendor's releases given the critical nature of disclosed flaws and the sensitive nature of networks where Inspector operates; live severity and exploitation counts are shown alongside this summary.

FAUCET AI Generated
11
Total CVEs
More Total CVEs than 92% of tracked vendors
11.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 100% of tracked vendors
8.3
Avg CVSS Score
Higher Avg CVSS Score than 81% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Zingbox over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 9, 2019
6 years ago
Most Recent CVE
Oct 9, 2019
2,480 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (11 CVEs).

11 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2019-1584CRITICAL
A security vulnerability exists in Zingbox Inspector version 1.293 and earlier, that allows for remote code execution if the Inspector were sent a malicious command from the Zingbo
Oct 9, 20199.832NONO
CVE-2019-15020CRITICAL
A security vulnerability exists in the Zingbox Inspector versions 1.293 and earlier, that could allow an attacker to supply an invalid software update image to the Zingbox Inspecto
Oct 9, 20199.828NONO
CVE-2019-15019CRITICAL
A security vulnerability exists in the Zingbox Inspector versions 1.294 and earlier, that could allow an attacker to supply an invalid software update image to the Zingbox Inspecto
Oct 9, 20199.828NONO
CVE-2019-15014HIGH
A command injection vulnerability exists in the Zingbox Inspector versions 1.286 and earlier, that allows for an authenticated user to execute arbitrary system commands in the CLI.
Oct 9, 20198.827NONO
CVE-2019-15016HIGH
An SQL injection vulnerability exists in the management interface of Zingbox Inspector versions 1.288 and earlier, that allows for unsanitized data provided by an authenticated use
Oct 9, 20198.826NONO
CVE-2019-15017HIGH
The SSH service is enabled on the Zingbox Inspector versions 1.294 and earlier, exposing SSH to the local network. When combined with PAN-SA-2019-0027, this can allow an attacker t
Oct 9, 20198.425NONO
CVE-2019-15015HIGH
In the Zingbox Inspector, versions 1.294 and earlier, hardcoded credentials for root and inspector user accounts are present in the system software, which can result in unauthorize
Oct 9, 20198.425NONO
CVE-2019-15022HIGH
A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that allows for the Inspector to be susceptible to ARP spoofing.
Oct 9, 20197.524NONO
CVE-2019-15018HIGH
A security vulnerability exists in the Zingbox Inspector versions 1.280 and earlier, where authentication is not required when binding the Inspector instance to a different custome
Oct 9, 20197.524NONO
CVE-2019-15023HIGH
A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that results in passwords for 3rd party integrations being stored in cleartext in device configurat
Oct 9, 20197.523NONO
View all 11 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products11 CVEs
9%
64%
27%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local2 (18.2%)
Network9 (81.8%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low11 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None11 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low2 (18.2%)
High0 (0.0%)
None9 (81.8%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (11 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Zingbox.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Zingbox — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Zingbox's Products

View all 1 CNAs →

Top CWEs