9.1

CVE-2016-4510

The WAP interface in Trihedral VTScada (formerly VTS) 8.x through 11.x before 11.2.02 allows remote attackers to bypass authentication and read arbitrary files via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
TrihedralVtscada Version10.1.05
TrihedralVtscada Version10.1.06
TrihedralVtscada Version10.1.07
TrihedralVtscada Version10.1.12
TrihedralVtscada Version10.0.11
TrihedralVtscada Version10.0.13
TrihedralVtscada Version10.0.14
TrihedralVtscada Version10.0.16
TrihedralVtscada Version10.0.17
TrihedralVtscada Version11.1.05
TrihedralVtscada Version11.1.06
TrihedralVtscada Version11.1.09
TrihedralVtscada Version11.1.10
TrihedralVtscada Version11.1.13
TrihedralVtscada Version11.1.14
TrihedralVtscada Version11.1.15
TrihedralVtscada Version11.1.16
TrihedralVtscada Version11.1.17
TrihedralVtscada Version11.1.18
TrihedralVtscada Version11.1.19
TrihedralVtscada Version11.1.20
TrihedralVtscada Version11.1.21
TrihedralVtscada Version11.1.22
TrihedralVtscada Version11.1.24
TrihedralVtscada Version8.0.05
TrihedralVtscada Version8.0.12
TrihedralVtscada Version8.0.16
TrihedralVtscada Version8.0.18
TrihedralVtscada Version8.1.05
TrihedralVtscada Version8.1.06
TrihedralVtscada Version10.2.05
TrihedralVtscada Version10.2.07
TrihedralVtscada Version10.2.08
TrihedralVtscada Version10.2.11
TrihedralVtscada Version10.2.13
TrihedralVtscada Version10.2.14
TrihedralVtscada Version10.2.15
TrihedralVtscada Version10.2.17
TrihedralVtscada Version10.2.19
TrihedralVtscada Version10.2.20
TrihedralVtscada Version10.2.21
TrihedralVtscada Version10.2.22
TrihedralVtscada Version9.0.02
TrihedralVtscada Version9.0.03
TrihedralVtscada Version9.0.08
TrihedralVtscada Version9.1.02
TrihedralVtscada Version9.1.03
TrihedralVtscada Version9.1.05
TrihedralVtscada Version9.1.09
TrihedralVtscada Version9.1.11
TrihedralVtscada Version9.1.14
TrihedralVtscada Version9.1.20
TrihedralVtscada Version11.0.05
TrihedralVtscada Version11.0.07
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 20.1% 0.971
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.1 3.9 5.2
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
nvd@nist.gov 6.4 10 4.9
AV:N/AC:L/Au:N/C:P/I:P/A:N
CWE-287 Improper Authentication

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

http://www.securityfocus.com/bid/91077
http://www.zerodayinitiative.com/advisories/ZDI-16-404
https://ics-cert.us-cert.gov/advisories/ICSA-16-159-01
Third Party Advisory
US Government Resource