← Voltar para CVEs
CVE-2015-6485
N/ADescricao
Schneider Electric Telvent Sage 2300 RTUs with firmware before C3413-500-S01, and LANDAC II-2, Sage 1410, Sage 1430, Sage 1450, Sage 2400, and Sage 3030M RTUs with firmware before C3414-500-S02J2, allow remote attackers to obtain sensitive information from device memory by reading a padding field of an Ethernet packet.
Detalhes CVE
Pontuacao CVSS v3.1N/A
Publicado3/12/2016
Ultima modificacao4/12/2025
Fontenvd
Avistamentos honeypot0
Produtos afetados
schneider-electric:sage_1410schneider-electric:sage_1430schneider-electric:sage_1450schneider-electric:sage_2300schneider-electric:sage_2400schneider-electric:sage_3030mschneider-electric:sage_landac_ii-2schneider-electric:telvent_rtu_firmware
Fraquezas (CWE)
CWE-200
Referencias
https://ics-cert.us-cert.gov/advisories/ICSA-16-070-01(ics-cert@hq.dhs.gov)
https://ics-cert.us-cert.gov/advisories/ICSA-16-070-01(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.