QID 378029

Date Published: 2023-03-28

QID 378029: EyesOfNetwork Multiple Vulnerabilities

EyesOfNetwork is a global supervision solution for the hardware status of equipment, operating systems, standard applications, business applications, and performance.

Affected Versions:
EyesOfNetwork v5.3.11 and earlier

QID Detection Logic(Unauthenticated):
This QID sends checks for vulnerable version of EyesOfNetwork via "rpm -qa" command.

An attacker can trigger a local file inclusion attack and read sensitive files.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as Critical - 10 severity.
  • Solution
    Vendor has released updated versions to fix these vulnerabilities. Please refer EyesOfNetwork Downloads
    Vendor References

    CVEs related to QID 378029

    Software Advisories
    Advisory ID Software Component Link
    CVE-2022-41571 URL Logo github.com/EyesOfNetworkCommunity/eonweb/issues/120