In IP-AK2 Access Control Panel Version 1.04.07 and prior, the integrated web server of the affected devices could allow remote attackers to obtain web configuration data, which can be accessed without authentication over the network.
References
Link | Resource |
---|---|
https://www.us-cert.gov/ics/advisories/icsa-19-297-02 | Third Party Advisory US Government Resource |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: icscert
Published: 2019-10-25T17:57:13
Updated: 2019-10-25T17:57:13
Reserved: 2019-07-11T00:00:00
Link: CVE-2019-13525
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-10-25T18:15:10.723
Modified: 2019-10-30T18:25:15.653
Link: CVE-2019-13525
JSON object: View
Redhat Information
No data.
CWE