Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4hpf-94w8-jpmf

Опубликовано: 09 янв. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.7). The "intermediate installation" system state of the affected application uses default credential with admin privileges. An attacker could use the credentials to gain complete control of the affected device.

A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.7). The "intermediate installation" system state of the affected application uses default credential with admin privileges. An attacker could use the credentials to gain complete control of the affected device.

EPSS

Процентиль: 36%
0.00151
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-1392

Связанные уязвимости

CVSS3: 9.8
nvd
около 2 лет назад

A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.7). The "intermediate installation" system state of the affected application uses default credential with admin privileges. An attacker could use the credentials to gain complete control of the affected device.

CVSS3: 9.8
fstec
около 2 лет назад

Уязвимость процесса промежуточной установки микропрограммного обеспечения коммуникационного шлюза SIMATIC CN 4100, позволяющая нарушителю получить полный контроль над приложением

EPSS

Процентиль: 36%
0.00151
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-1392