← Retour aux CVEs
CVE-2019-6526
CRITICAL9.8
Description
Moxa IKS-G6824A series Versions 4.5 and prior, EDS-405A series Version 3.8 and prior, EDS-408A series Version 3.8 and prior, and EDS-510A series Version 3.8 and prior use plaintext transmission of sensitive data, which may allow an attacker to capture sensitive data such as an administrative password.
Details CVE
Score CVSS v3.19.8
SeveriteCRITICAL
Vecteur CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vecteur d'attaqueNETWORK
ComplexiteLOW
Privileges requisNONE
Interaction utilisateurNONE
Publie4/15/2019
Derniere modification11/21/2024
Sourcenvd
Observations honeypot0
Produits affectes
moxa:eds-405amoxa:eds-405a_firmwaremoxa:eds-408amoxa:eds-408a_firmwaremoxa:eds-510amoxa:eds-510a_firmwaremoxa:iks-g6824amoxa:iks-g6824a_firmware
Faiblesses (CWE)
CWE-311CWE-319
References
https://ics-cert.us-cert.gov/advisories/ICSA-19-057-01(ics-cert@hq.dhs.gov)
https://ics-cert.us-cert.gov/advisories/ICSA-19-057-01(af854a3a-2127-422b-91ae-364da2661108)
Correlations IOC
Aucune correlation enregistree
This product uses data from the NVD API but is not endorsed or certified by the NVD.