Echelon SmartServer 1 all versions, SmartServer 2 all versions prior to release 4.11.007, i.LON 100 all versions, and i.LON 600 all versions. The devices store passwords in plaintext, which may allow an attacker with access to the configuration file to log into the SmartServer web user interface.
References
Link Resource
https://ics-cert.us-cert.gov/advisories/ICSA-18-200-03 Third Party Advisory US Government Resource
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: icscert

Published: 2018-07-19T00:00:00

Updated: 2018-07-24T16:57:01

Reserved: 2018-03-20T00:00:00


Link: CVE-2018-8851

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2018-07-24T17:29:00.353

Modified: 2019-10-09T23:42:57.160


Link: CVE-2018-8851

JSON object: View

cve-icon Redhat Information

No data.