CVE-2016-2311
6.5
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD
Description
Black Box AlertWerks ServSensor with firmware before SP473, AlertWerks ServSensor Junior with firmware before SP473, AlertWerks ServSensor Junior with PoE with firmware before SP473, and AlertWerks ServSensor Contact with firmware before SP473 allow remote authenticated users to discover administrator and user passwords via unspecified vectors.
Affected (4)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Blackbox Alertwerks Servsensor Junior Eme102a R2 | All versions |
Blackbox Alertwerks Servsensor Junior Eme103a R2 | All versions |
Blackbox Alertwerks Servsensor Junior Eme104a R2 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Blackbox Alertwerks Servsensor Contact Eme111a 20 R2 | All versions |
Blackbox Alertwerks Servsensor Contact Eme111a 60 R2 | All versions |
Blackbox Alertwerks Servsensor Contact Eme112a 20 R2 | All versions |
Blackbox Alertwerks Servsensor Contact Eme112a 60 R2 | All versions |
Blackbox Alertwerks Servsensor Contact Eme113a 20 R2 | All versions |
Blackbox Alertwerks Servsensor Contact Eme113a 60 R2 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Blackbox Alertwerks Servsensor Eme106a | All versions |
Blackbox Alertwerks Servsensor Eme108a R2 | All versions |
Blackbox Alertwerks Servsensor Eme109a R2 | All versions |
Blackbox Alertwerks Servsensor Eme110a R2 | All versions |
Blackbox Alertwerks Servsensor Eme105a | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Blackbox Alertwerks Servsensor Junior Eme152a | All versions |
Blackbox Alertwerks Servsensor Junior Eme153a | All versions |
Blackbox Alertwerks Servsensor Junior Eme154a | All versions |
Blackbox Alertwerks Servsensor Junior Eme155a | All versions |
Blackbox Alertwerks Servsensor Junior Eme158a | All versions |
Related CWEs
References (2)
Source: ics-cert@hq.dhs.gov
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Timeline
No history available yet.