An attacker could retrieve passwords from a HTTP GET request from the Kunbus PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) if the attacker is in an MITM position.
References
Link Resource
https://ics-cert.us-cert.gov/advisories/ICSA-19-036-05 Third Party Advisory US Government Resource
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: icscert

Published: 2019-04-02T19:15:11

Updated: 2019-04-02T19:15:11

Reserved: 2019-01-22T00:00:00


Link: CVE-2019-6531

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-04-02T20:29:00.410

Modified: 2021-06-22T13:01:49.883


Link: CVE-2019-6531

JSON object: View

cve-icon Redhat Information

No data.