Описание
An issue was discovered on KONE Group Controller (KGC) devices before 4.6.5. FTP does not require authentication or authorization, aka KONE-03.
Ссылки
- Third Party AdvisoryVDB Entry
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 4.6.5 (исключая)
Одновременно
cpe:2.3:o:kone:group_controller_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:kone:group_controller:-:*:*:*:*:*:*:*
EPSS
Процентиль: 78%
0.01131
Низкий
9.1 Critical
CVSS3
6.4 Medium
CVSS2
Дефекты
CWE-287
Связанные уязвимости
CVSS3: 9.1
github
больше 3 лет назад
An issue was discovered on KONE Group Controller (KGC) devices before 4.6.5. FTP does not require authentication or authorization, aka KONE-03.
EPSS
Процентиль: 78%
0.01131
Низкий
9.1 Critical
CVSS3
6.4 Medium
CVSS2
Дефекты
CWE-287