Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-35hg-f9qq-236g

Опубликовано: 17 окт. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.8

Описание

Eaton easyE4 PLC offers a device password protection functionality to facilitate a secure connection and prevent unauthorized access. It was observed that the device password was stored with a weak encoding algorithm in the easyE4 program file when exported to SD card (*.PRG file ending).

Eaton easyE4 PLC offers a device password protection functionality to facilitate a secure connection and prevent unauthorized access. It was observed that the device password was stored with a weak encoding algorithm in the easyE4 program file when exported to SD card (*.PRG file ending).

EPSS

Процентиль: 7%
0.00028
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-261
CWE-326

Связанные уязвимости

CVSS3: 6.8
nvd
больше 2 лет назад

Eaton easyE4 PLC offers a device password protection functionality to facilitate a secure connection and prevent unauthorized access. It was observed that the device password was stored with a weak encoding algorithm in the easyE4 program file when exported to SD card (*.PRG file ending).

EPSS

Процентиль: 7%
0.00028
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-261
CWE-326