← Back

CVE-2019-17218

nvd nist
Published: Oct 6, 2019Modified: Nov 21, 2024

JSON object

Loading...
9.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Exploitability: 3.9 / Impact: 5.2
Source: NVD

Description

An issue was discovered on V-Zug Combi-Steam MSLQ devices before Ethernet R07 and before WLAN R05. By default, the communication to the web service is unencrypted via http. An attacker is able to intercept and sniff communication to the web service.

Affected (2)

1 product
Combi Stream Mslq Firmware
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before ethernet_r07
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before wlan_r05
Running on/withPlatform Versions
Vzug
Combi Stream Mslq
All versions

References (2)

Source: cve@mitre.org
Permissions RequiredThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions RequiredThird Party Advisory

Timeline

No history available yet.