Eir Known Exploited Vulnerabilities
Evidence-backed KEV intelligence for Eir products — CISA KEV status, confidence, sensor telemetry, and virtual-patch availability.
Total KEVs
3
In CISA KEV
1
Beyond CISA KEV
2
Sensor Observed
1
Virtual Patch Available
0
Eir KEVs Added by Year
3 Eir KEVs added all time (primary attestation date).
Attested CVEs
| CVE | Product | Confidence | CISA KEV | Added |
|---|---|---|---|---|
|
CVE-2016-10372
The Eir D1000 modem does not properly restrict the TR-064 protocol, which allows remote attackers to execute arbitrary commands via TCP port 7547,... |
D1000 modem | Confirmed | Not in CISA | 28 Apr 2025 |
|
CVE-2020-15505
A remote code execution vulnerability in MobileIron Core & Connector versions 10.3.0.3 and earlier, 10.4.0.0, 10.4.0.1, 10.4.0.2, 10.4.0.3,... |
Core & Connector, Sentry, Monitor and Reporting Database (RDB) | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2022-32409
A local file inclusion (LFI) vulnerability in the component codemirror.php of Portal do Software Publico Brasileiro i3geo v7.0.5 allows attackers... |
i3geo | High | Not in CISA | 14 Jul 2022 |
Common Vulnerability Classes (CWE)
- CWE-22 — Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') 1
- CWE-264 — Permissions, Privileges, and Access Controls 1
- CWE-706 — Use of Incorrectly-Resolved Name or Reference 1
Browse all known exploited vulnerabilities · What is a known exploited vulnerability? · Methodology