← Back

Cososys

cososys

3 CVEs • 2 products

Products (2)

Click to collapse
Toggle

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Cososys
1Endpoint Protector
Jun 17, 2026
May 4, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
CoSoSys Endpoint Protector 5.1.0.2 allows Host Header Injection.
1Cososys
1Endpoint Protector
May 6, 2026
Jun 2, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the device registration component in wsf/webservice.php in CoSoSys Endpoint Protector 4 4.3.0.4 and 4.4.0.2 allows remote attackers to execute arbitrary SQL commands via unspecified paramet...Show more
SQL injection vulnerability in the device registration component in wsf/webservice.php in CoSoSys Endpoint Protector 4 4.3.0.4 and 4.4.0.2 allows remote attackers to execute arbitrary SQL commands via unspecified parameters.Show less
1Cososys
1Endpoint Protector Appliace 4
Apr 29, 2026
Sep 18, 2012
N/A· v4
N/A· v3
7.5 HIGH· v2
The CoSoSys Endpoint Protector 4 appliance establishes an EPProot password based entirely on the appliance serial number, which makes it easier for remote attackers to obtain access via a brute-force attack.