PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) may allow an attacker to be able to change the password for an admin user who is currently or previously logged in, provided the device has not been restarted.
References
Link | Resource |
---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-19-036-05 | Mitigation Third Party Advisory US Government Resource |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: icscert
Published: 2019-02-05T00:00:00
Updated: 2019-02-12T16:57:01
Reserved: 2019-01-22T00:00:00
Link: CVE-2019-6527
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-02-12T17:29:00.353
Modified: 2023-01-31T21:00:19.963
Link: CVE-2019-6527
JSON object: View
Redhat Information
No data.
CWE