EyesOfNetwork Known Exploited Vulnerabilities

Evidence-backed KEV intelligence for EyesOfNetwork products — CISA KEV status, confidence, sensor telemetry, and virtual-patch availability.

Total KEVs

3

In CISA KEV

2

Beyond CISA KEV

1

Sensor Observed

0

Virtual Patch Available

0

EyesOfNetwork KEVs Added by Year

Loading...

3 EyesOfNetwork KEVs added all time (primary attestation date).

Attested CVEs

CVE Confidence CISA KEV Added
CVE-2020-8655

An issue was discovered in EyesOfNetwork 5.3. The sudoers configuration is prone to a privilege escalation vulnerability, allowing the apache user...

Confirmed In CISA 03 Nov 2021
CVE-2020-8657

An issue was discovered in EyesOfNetwork 5.3. The installation uses the same API key (hardcoded as EONAPI_KEY in include/api_functions.php for API...

Confirmed In CISA 03 Nov 2021
CVE-2020-8656

An issue was discovered in EyesOfNetwork 5.3. The EyesOfNetwork API 2.4.2 is prone to SQL injection, allowing an unauthenticated attacker to...

High Not in CISA 06 Feb 2020

Common Vulnerability Classes (CWE)

  • CWE-269 — Improper Privilege Management 1
  • CWE-798 — Use of Hard-coded Credentials 1
  • CWE-89 — Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') 1

Browse all known exploited vulnerabilities · What is a known exploited vulnerability? · Methodology