CVE-2017-7905
9.8
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
A Weak Cryptography for Passwords issue was discovered in General Electric (GE) Multilin SR 750 Feeder Protection Relay, firmware versions prior to Version 7.47; SR 760 Feeder Protection Relay, firmware versions prior to Version 7.47; SR 469 Motor Protection Relay, firmware versions prior to Version 5.23; SR 489 Generator Protection Relay, firmware versions prior to Version 4.06; SR 745 Transformer Protection Relay, firmware versions prior to Version 5.23; SR 369 Motor Protection Relay, all firmware versions; Multilin Universal Relay, firmware Version 6.0 and prior versions; and Multilin URplus (D90, C90, B95), all versions. Ciphertext versions of user passwords were created with a non-random initialization vector leaving them susceptible to dictionary attacks. Ciphertext of user passwords can be obtained from the front LCD panel of affected products and through issued Modbus commands.
Affected (10)
Products: Ge: Multilin Sr 750 Feeder Protection Relay Firmware, Multilin Sr 760 Feeder Protection Relay Firmware, Multilin Sr 469 Motor Protection Relay Firmware, Multilin Sr 489 Generator Protection Relay Firmware, Multilin Sr 745 Transformer Protection Relay Firmware, Multilin Sr 369 Motor Protection Relay Firmware, Multilin Universal Relay Firmware, Multilin Urplus D90 Firmware, Multilin Urplus C90 Firmware, Multilin Urplus B95 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 5.02 |
| Running on/with | Platform Versions |
|---|---|
Ge Multilin Sr 750 Feeder Protection Relay | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 5.02 |
| Running on/with | Platform Versions |
|---|---|
Ge Multilin Sr 760 Feeder Protection Relay | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.90 |
| Running on/with | Platform Versions |
|---|---|
Ge Multilin Sr 469 Motor Protection Relay | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.53 |
| Running on/with | Platform Versions |
|---|---|
Ge Multilin Sr 489 Generator Protection Relay | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.85 |
| Running on/with | Platform Versions |
|---|---|
Ge Multilin Sr 745 Transformer Protection Relay | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Ge Multilin Sr 369 Motor Protection Relay | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 6.0 |
| Running on/with | Platform Versions |
|---|---|
Ge Multilin Universal Relay | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Ge Multilin Urplus D90 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Ge Multilin Urplus C90 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Ge Multilin Urplus B95 | All versions |
Related CWEs
CWE-261
Weak Encoding for Password
Obscuring a password with a trivial encoding does not protect the password.
CWE-326
Inadequate Encryption Strength
The product stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required.
CWE-330
Use of Insufficiently Random Values
The product uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.
CWE-522
Insufficiently Protected Credentials
The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.
References (4)
Source: ics-cert@hq.dhs.gov
PatchThird Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party AdvisoryUS Government Resource
Timeline
No history available yet.