Zzinc's vulnerability profile centers on firmware and control software for its KeyMouse input device, a modestly represented but more-prominent-than-typical endpoint peripheral in the vulnerability landscape. The recurring exposure involves authentication bypass, firmware integrity validation, and memory-safety weaknesses, alongside sensitive information disclosure and improper access control; a meaningful share of disclosures reach serious severity. Defenders tracking this vendor should prioritize firmware integrity verification and authentication controls on connected devices; current exploitation activity and severity counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Zzinc over time
Signals from CVEs in this vendor scope (14 CVEs).
14 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-24644HIGH ZZ Inc. KeyMouse Windows 3.08 and prior is affected by a remote code execution vulnerability during an unauthenticated update. To exploit this vulnerability, a user must trigger an | Mar 10, 2022 | 8.8 | 31 | NO | NO |
CVE-2016-1329CRITICAL Cisco NX-OS 6.0(2)U6(1) through 6.0(2)U6(5) on Nexus 3000 devices and 6.0(2)A6(1) through 6.0(2)A6(5) and 6.0(2)A7(1) on Nexus 3500 devices has hardcoded credentials, which allows | Mar 3, 2016 | 9.8 | 27 | NO | NO |
CVE-2016-1350HIGH Cisco IOS 15.3 and 15.4, Cisco IOS XE 3.8 through 3.11, and Cisco Unified Communications Manager allow remote attackers to cause a denial of service (device reload) via malformed S | Mar 26, 2016 | 7.5 | 26 | NO | NO |
CVE-2016-1349HIGH The Smart Install client implementation in Cisco IOS 12.2, 15.0, and 15.2 and IOS XE 3.2 through 3.7 allows remote attackers to cause a denial of service (device reload) via crafte | Mar 26, 2016 | 7.5 | 25 | NO | NO |
CVE-2016-1348HIGH Cisco IOS 15.0 through 15.5 and IOS XE 3.3 through 3.16 allow remote attackers to cause a denial of service (device reload) via a crafted DHCPv6 Relay message, aka Bug ID CSCus5582 | Mar 26, 2016 | 7.5 | 24 | NO | NO |
CVE-2016-1302HIGH Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.0(3h) and 1.1 before 1.1(1j) and Nexus 9000 ACI Mode switches with software before 11.0(3h) | Feb 7, 2016 | 8.8 | 24 | NO | NO |
CVE-2016-1344MEDIUM The IKEv2 implementation in Cisco IOS 15.0 through 15.6 and IOS XE 3.3 through 3.17 allows remote attackers to cause a denial of service (device reload) via fragmented packets, aka | Mar 26, 2016 | 5.9 | 23 | NO | NO |
CVE-2016-1346MEDIUM The kernel in Cisco TelePresence Server 3.0 through 4.2(4.18) on Mobility Services Engine (MSE) 8710 devices allows remote attackers to cause a denial of service (panic and reboot) | Apr 6, 2016 | 5.9 | 22 | NO | NO |
CVE-2015-6313HIGH Cisco TelePresence Server 4.1(2.29) through 4.2(4.17) on 7010; Mobility Services Engine (MSE) 8710; Multiparty Media 310, 320, and 820; and Virtual Machine (VM) devices allows remo | Apr 6, 2016 | 7.5 | 20 | NO | NO |
CVE-2015-6312HIGH Cisco TelePresence Server 3.1 on 7010, Mobility Services Engine (MSE) 8710, Multiparty Media 310 and 320, and Virtual Machine (VM) devices allows remote attackers to cause a denial | Apr 6, 2016 | 7.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (14 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Zzinc.
Media articles that mention a CVE ID that affects a product developed by Zzinc — matched by CVE ID, not by vendor name.