threat
engine
.sh
Back
·
··:··
Home
/
Product
/
optergy proton
Product
optergy proton
12 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2022-50917
all versions
ProtonVPN 1.26.0 contains an unquoted service path vulnerability in its WireGuard service configuration that allows local attacker
7.8
HIGH
CVE-2024-37391
< 3.2.10
ProtonVPN before 3.2.10 on Windows mishandles the drive installer path, which should use this: '"' + ExpandConstant('{autopf}\Prot
7.8
HIGH
CVE-2022-25224
all versions
Proton v0.2.0 allows an attacker to create a malicious link inside a markdown file. When the victim clicks the link, the applicati
5.4
MEDIUM
CVE-2019-7274
<= 2.3.0a
Optergy Proton/Enterprise devices allow Authenticated File Upload with Code Execution as root.
9.8
CRITICAL
CVE-2019-7273
<= 2.3.0a
Optergy Proton/Enterprise devices allow Cross-Site Request Forgery (CSRF).
8.8
HIGH
CVE-2019-7272
<= 2.3.0a
Optergy Proton/Enterprise devices allow Username Disclosure.
5.3
MEDIUM
CVE-2019-7278
<= 2.3.0a
Optergy Proton/Enterprise devices have an Unauthenticated SMS Sending Service.
6.5
MEDIUM
CVE-2019-7277
<= 2.3.0a
Optergy Proton/Enterprise devices allow Unauthenticated Internal Network Information Disclosure.
5.3
MEDIUM
CVE-2019-7276
<= 2.3.0a
Optergy Proton/Enterprise devices allow Remote Root Code Execution via a Backdoor Console.
9.8
CRITICAL
CVE-2019-7275
<= 2.3.0a
Optergy Proton/Enterprise devices allow Open Redirect.
6.1
MEDIUM
CVE-2019-7279
<= 2.3.0a
Optergy Proton/Enterprise devices have Hard-coded Credentials.
7.3
HIGH
CVE-2006-3293
all versions
parse_notice (TiCPU) in EnergyMech (emech) before 3.0.2 allows remote attackers to cause a denial of service (crash) via empty IRC
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin