浏览 24+ 条来自 NVD 与 CNNVD 的 CVE 漏洞,配 AI 中文翻译、AI POC 生成、每日情报;可按厂商、产品、严重等级、CWE 检索。
| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-28256 | Use of Hard-coded Credentials vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge | Trane | Tracer SC | - | - | 2026-03-12 17:34:57 | Deep Dive |
| CVE-2026-28255 | Use of Hard-coded Credentials vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge | Trane | Tracer SC | - | - | 2026-03-12 17:33:29 | Deep Dive |
| CVE-2026-28254 | Missing Authorization vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge | Trane | Tracer SC | - | - | 2026-03-12 17:29:57 | Deep Dive |
| CVE-2026-28253 | Memory Allocation with Excessive Size Value vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge | Trane | Tracer SC | - | - | 2026-03-12 17:27:04 | Deep Dive |
| CVE-2026-28252 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge | Trane | Tracer SC | - | - | 2026-03-12 17:24:04 | Deep Dive |
| CVE-2023-4212 | Trane Thermostats Injection | Trane Technologies | XL824 Thermostat | Medium | 6.8 | 2023-08-22 17:34:12 | Deep Dive |
| CVE-2021-38448 | Trane Symbio Improper Control of Generation of Code | Trane | Symbio | High | 7.5 | 2021-11-22 18:58:45 | Deep Dive |
| CVE-2021-38450 | Trane Tracer Code Injection | Trane | Tracer SC | Critical | 9.9 | 2021-10-27 00:48:51 | Deep Dive |
| CVE-2021-42534 | Trane Building Automation Controllers Cross-site Scripting | Trane | Tracer SC | Medium | 6.3 | 2021-10-22 13:17:16 | Deep Dive |
| CVE-2021-41302 | ECOA BAS controller - Missing Encryption of Sensitive Data | ECOA | ECS Router Controller ECS (FLASH) | High | 7.3 | 2021-09-30 10:41:08 | Deep Dive |
| CVE-2021-41301 | ECOA BAS controller - Exposure of Sensitive Information to an Unauthorized Actor | ECOA | ECS Router Controller ECS (FLASH) | Critical | 9.8 | 2021-09-30 10:41:07 | Deep Dive |
| CVE-2021-41300 | ECOA BAS controller - Insufficiently Protected Credentials-2 | ECOA | ECS Router Controller ECS (FLASH) | Critical | 9.8 | 2021-09-30 10:41:05 | Deep Dive |
| CVE-2021-41299 | ECOA BAS controller - Use of Hard-coded Credentials | ECOA | ECS Router Controller ECS (FLASH) | Critical | 9.8 | 2021-09-30 10:41:04 | Deep Dive |
| CVE-2021-41298 | ECOA BAS controller - Improper Access Control | ECOA | ECS Router Controller ECS (FLASH) | High | 8.8 | 2021-09-30 10:41:02 | Deep Dive |
| CVE-2021-41297 | ECOA BAS controller - Insufficiently Protected Credentials-1 | ECOA | ECS Router Controller ECS (FLASH) | High | 8.8 | 2021-09-30 10:41:00 | Deep Dive |
| CVE-2021-41296 | ECOA BAS controller - Weak Password Requirements | ECOA | ECS Router Controller ECS (FLASH) | Critical | 9.8 | 2021-09-30 10:40:59 | Deep Dive |
| CVE-2021-41295 | ECOA BAS controller - Cross-Site Request Forgery (CSRF) | ECOA | ECS Router Controller ECS (FLASH) | High | 8.8 | 2021-09-30 10:40:57 | Deep Dive |
| CVE-2021-41294 | ECOA BAS controller - Path Traversal-4 | ECOA | ECS Router Controller ECS (FLASH) | Critical | 9.1 | 2021-09-30 10:40:56 | Deep Dive |
| CVE-2021-41293 | ECOA BAS controller - Path Traversal-3 | ECOA | ECS Router Controller ECS (FLASH) | High | 7.5 | 2021-09-30 10:40:54 | Deep Dive |
| CVE-2021-41292 | ECOA BAS controller - Broken Authentication | ECOA | ECS Router Controller ECS (FLASH) | Critical | 9.8 | 2021-09-30 10:40:53 | Deep Dive |