Back

CRITICAL KEV

An issue was discovered in EyesOfNetwork 5.3

Published Feb 6, 2020 ·Due May 3, 2022

Description

An issue was discovered in EyesOfNetwork 5.3. The installation uses the same API key (hardcoded as EONAPI_KEY in include/api_functions.php for API version 2.4.2) by default for all installations, hence allowing an attacker to calculate/guess the admin access token.

Affected products

Remediation

No remediation recorded yet.

References (4)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner mitre
Published Feb 6, 2020
Updated Oct 21, 2025
Reserved Feb 6, 2020

CISA Vulnrichment

Updated Feb 4, 2025

NVD

Status Analyzed
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner mitre
Published Feb 6, 2020
Updated Oct 21, 2025
Exploited since Nov 3, 2021

GitHub

No data