← Back

Marine Pro Observer

marine_pro_observer

Vendor: Auto Maskin • 4 CVEs

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Auto Maskin
3Dcu 210e Firmware
Marine Pro ObserverRp 210e Firmware
Nov 21, 2024
Mar 23, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In Auto-Maskin RP210E Versions 3.7 and prior, DCU210E Versions 3.7 and prior and Marine Observer Pro (Android App), the software contains a mechanism for users to recover or change their passwords without knowing the ori...Show more
In Auto-Maskin RP210E Versions 3.7 and prior, DCU210E Versions 3.7 and prior and Marine Observer Pro (Android App), the software contains a mechanism for users to recover or change their passwords without knowing the original password, but the mechanism is weak.Show less
1Auto Maskin
3Dcu 210 Firmware
Marine Pro ObserverRp210e Firmware
Nov 21, 2024
Mar 23, 2020
N/A· v4
9.1 CRITICAL· v3
6.4 MEDIUM· v2
In Auto-Maskin RP210E Versions 3.7 and prior, DCU210E Versions 3.7 and prior and Marine Observer Pro (Android App), the software contains a mechanism for users to recover or change their passwords without knowing the ori...Show more
In Auto-Maskin RP210E Versions 3.7 and prior, DCU210E Versions 3.7 and prior and Marine Observer Pro (Android App), the software contains a mechanism for users to recover or change their passwords without knowing the original password, but the mechanism is weak.Show less
1Auto Maskin
3Dcu 210e Firmware
Marine Pro ObserverRp 210e Firmware
Nov 21, 2024
Oct 8, 2018
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
The Auto-Maskin DCU 210E, RP-210E, and Marine Pro Observer Android App use an embedded webserver that uses unencrypted plaintext for the transmission of the administrator PIN Impact: An attacker once authenticated can ch...Show more
The Auto-Maskin DCU 210E, RP-210E, and Marine Pro Observer Android App use an embedded webserver that uses unencrypted plaintext for the transmission of the administrator PIN Impact: An attacker once authenticated can change configurations, upload new configuration files, and upload executable code via file upload for firmware updates. Requires access to the network. Affected releases are Auto-Maskin DCU-210E, RP-210E, and the Marine Pro Observer Android App. Versions prior to 3.7 on ARMv7.Show less
1Auto Maskin
3Dcu 210e Firmware
Marine Pro ObserverRp 210e Firmware
Nov 21, 2024
Oct 8, 2018
N/A· v4
5.9 MEDIUM· v3
4.3 MEDIUM· v2
The Auto-Maskin DCU 210E, RP-210E, and Marine Pro Observer Android App transmit sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors. The devices transmit...Show more
The Auto-Maskin DCU 210E, RP-210E, and Marine Pro Observer Android App transmit sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors. The devices transmit process control information via unencrypted Modbus communications. Impact: An attacker can exploit this vulnerability to observe information about configurations, settings, what sensors are present and in use, and other information to aid in crafting spoofed messages. Requires access to the network. Affected releases are Auto-Maskin DCU-210E, RP-210E, and Marine Pro Observer Android App. Versions prior to 3.7 on ARMv7.Show less