EWON Flexy 202 transmits user credentials in clear text with no encryption when a user is added, or user credentials are changed via its webpage.
CVE ID: CVE-2025-0432
CVSS Base Severity: MEDIUM
CVSS Base Score: 6.9
Vendor: HMS Networks
Product: Ewon Flexy 202
EPSS Score: 0.05% (probability of being exploited)
EPSS Percentile: 18.25% (scored less or equal to compared to others)
EPSS Date: 2025-02-27 (when was this score calculated)