An issue was discovered on V-Zug Combi-Steam MSLQ devices before Ethernet R07 and before WLAN R05. By default, the device does not enforce any authentication. An adjacent attacker is able to use the network interface without proper access control.
References
Link | Resource |
---|---|
https://vuldb.com/?id.134115 | Permissions Required Third Party Advisory |
https://vuldb.com/?id.134115 | Permissions Required Third Party Advisory |
Configurations
History
21 Nov 2024, 04:31
Type | Values Removed | Values Added |
---|---|---|
References | () https://vuldb.com/?id.134115 - Permissions Required, Third Party Advisory |
Information
Published : 2019-10-06 16:15
Updated : 2024-11-21 04:31
NVD link : CVE-2019-17219
Mitre link : CVE-2019-17219
CVE.ORG link : CVE-2019-17219
JSON object : View
Products Affected
vzug
- combi-stream_mslq
- combi-stream_mslq_firmware
CWE
CWE-306
Missing Authentication for Critical Function