Description

Cosy+ devices running a firmware 21.x below 21.2s10 or a firmware 22.x below 22.1s3 use a unique key to encrypt the configuration parameters. This is fixed in version 21.2s10 and 22.1s3, the key is now unique per device.

INFO

Published Date :

2024-08-02T00:00:00.000Z

Last Modified :

2025-11-04T16:12:16.505Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2024-33895 vulnerability.

Vendors Products
Hms-networks
  • Ewon Cosy\+ 4g Apac
  • Ewon Cosy\+ 4g Eu
  • Ewon Cosy\+ 4g Jp
  • Ewon Cosy\+ 4g Na
  • Ewon Cosy\+ Ethernet
  • Ewon Cosy\+ Firmware
  • Ewon Cosy\+ Wifi

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact