Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q4gj-2fgv-hpxf

Опубликовано: 04 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.6

Описание

Cleartext transmission of sensitive information vulnerability exists in multiple IDEC PLCs. If an attacker sends a specific command to PLC's serial communication port, user credentials may be obtained. As a result, the program of the PLC may be obtained, and the PLC may be manipulated.

Cleartext transmission of sensitive information vulnerability exists in multiple IDEC PLCs. If an attacker sends a specific command to PLC's serial communication port, user credentials may be obtained. As a result, the program of the PLC may be obtained, and the PLC may be manipulated.

EPSS

Процентиль: 10%
0.00034
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 4.6
nvd
больше 1 года назад

Cleartext transmission of sensitive information vulnerability exists in multiple IDEC PLCs. If an attacker sends a specific command to PLC's serial communication port, user credentials may be obtained. As a result, the program of the PLC may be obtained, and the PLC may be manipulated.

EPSS

Процентиль: 10%
0.00034
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-319