CWE-284: Improper Access Control vulnerability exists in BMXNOR0200H Ethernet / Serial RTU module (all firmware versions), which could cause the execution of commands by unauthorized users when using IEC 60870-5-104 protocol.
References
Link | Resource |
---|---|
https://security.cse.iitk.ac.in/responsible-disclosure | Third Party Advisory |
https://www.schneider-electric.com/en/download/document/SEVD-2019-225-03/ | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: schneider
Published: 2019-09-17T19:52:38
Updated: 2019-10-02T12:10:29
Reserved: 2019-01-25T00:00:00
Link: CVE-2019-6810
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-09-17T20:15:11.860
Modified: 2023-02-13T19:54:52.767
Link: CVE-2019-6810
JSON object: View
Redhat Information
No data.
CWE