Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r573-6cpv-hcwq

Опубликовано: 09 янв. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 10

Описание

A vulnerability has been identified in SIMATIC IPC1047E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows), SIMATIC IPC647E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows), SIMATIC IPC847E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows). In default installations of maxView Storage Manager where Redfish® server is configured for remote system management, a vulnerability has been identified that can provide unauthorized access.

A vulnerability has been identified in SIMATIC IPC1047E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows), SIMATIC IPC647E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows), SIMATIC IPC847E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows). In default installations of maxView Storage Manager where Redfish® server is configured for remote system management, a vulnerability has been identified that can provide unauthorized access.

EPSS

Процентиль: 63%
0.00449
Низкий

10 Critical

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 10
nvd
около 2 лет назад

A vulnerability has been identified in SIMATIC IPC1047E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows), SIMATIC IPC647E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows), SIMATIC IPC847E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows). In default installations of maxView Storage Manager where Redfish® server is configured for remote system management, a vulnerability has been identified that can provide unauthorized access.

CVSS3: 10
fstec
около 2 лет назад

Уязвимость сервера Redfish менеджера хранения MaxView промышленных компьютеров SIMATIC IPC647E, SIMATIC IPC847E, SIMATIC IPC1047E, позволяющая нарушителю получить несанкционированный полный доступ к устройству

EPSS

Процентиль: 63%
0.00449
Низкий

10 Critical

CVSS3

Дефекты

CWE-20