EyesOfNetwork Known Exploited Vulnerabilities
Evidence-backed KEV intelligence for EyesOfNetwork products — CISA KEV status, confidence, sensor telemetry, and virtual-patch availability.
Total KEVs
3
In CISA KEV
2
Beyond CISA KEV
1
Sensor Observed
0
Virtual Patch Available
0
EyesOfNetwork KEVs Added by Year
3 EyesOfNetwork KEVs added all time (primary attestation date).
Attested CVEs
| CVE | Product | Confidence | CISA KEV | Added |
|---|---|---|---|---|
|
CVE-2020-8655
An issue was discovered in EyesOfNetwork 5.3. The sudoers configuration is prone to a privilege escalation vulnerability, allowing the apache user... |
EyesOfNetwork | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2020-8657
An issue was discovered in EyesOfNetwork 5.3. The installation uses the same API key (hardcoded as EONAPI_KEY in include/api_functions.php for API... |
EyesOfNetwork | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2020-8656
An issue was discovered in EyesOfNetwork 5.3. The EyesOfNetwork API 2.4.2 is prone to SQL injection, allowing an unauthenticated attacker to... |
EyesOfNetwork 5.3 | High | Not in CISA | 06 Feb 2020 |
Common Vulnerability Classes (CWE)
- CWE-269 — Improper Privilege Management 1
- CWE-798 — Use of Hard-coded Credentials 1
- CWE-89 — Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') 1
Browse all known exploited vulnerabilities · What is a known exploited vulnerability? · Methodology