Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m8hv-35c9-8jrx

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An Authentication Bypass by Capture-Replay issue was discovered in Schneider Electric Modicon Modbus Protocol. Sensitive information is transmitted in cleartext in the Modicon Modbus protocol, which may allow an attacker to replay the following commands: run, stop, upload, and download.

An Authentication Bypass by Capture-Replay issue was discovered in Schneider Electric Modicon Modbus Protocol. Sensitive information is transmitted in cleartext in the Modicon Modbus protocol, which may allow an attacker to replay the following commands: run, stop, upload, and download.

EPSS

Процентиль: 38%
0.00164
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-287
CWE-294

Связанные уязвимости

CVSS3: 9.8
nvd
больше 8 лет назад

An Authentication Bypass by Capture-Replay issue was discovered in Schneider Electric Modicon Modbus Protocol. Sensitive information is transmitted in cleartext in the Modicon Modbus protocol, which may allow an attacker to replay the following commands: run, stop, upload, and download.

CVSS3: 10
fstec
почти 9 лет назад

Уязвимость протокола Modbus микропрограммного обеспечения программируемых логических контроллеров, позволяющая нарушителю выполнить команды запуска, остановки, выгрузки и загрузки данных на устройстве

EPSS

Процентиль: 38%
0.00164
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-287
CWE-294