10
CVE-2016-9358
- EPSS 0.55%
- Veröffentlicht 30.06.2017 03:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
- Quelle ics-cert@hq.dhs.gov
- CVE-Watchlists
- Unerledigt
A Hard-Coded Passwords issue was discovered in Marel Food Processing Systems M3000 terminal associated with the following systems: A320, A325, A371, A520 Master, A520 Slave, A530, A542, A571, Check Bin Grader, FlowlineQC T376, IPM3 Dual Cam v132, IPM3 Dual Cam v139, IPM3 Single Cam v132, P520, P574, SensorX13 QC flow line, SensorX23 QC Master, SensorX23 QC Slave, Speed Batcher, T374, T377, V36, V36B, and V36C; M3210 terminal associated with the same systems as the M3000 terminal identified above; M3000 desktop software associated with the same systems as the M3000 terminal identified above; MAC4 controller associated with the same systems as the M3000 terminal identified above; SensorX23 X-ray machine; SensorX25 X-ray machine; and MWS2 weighing system. The end user does not have the ability to change system passwords.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Marel ≫ A320 Firmware Version-
Marel ≫ A325 Firmware Version-
Marel ≫ A371 Firmware Version-
Marel ≫ A520 Master Firmware Version-
Marel ≫ A520 Slave Firmware Version-
Marel ≫ A530 Firmware Version-
Marel ≫ A542 Firmware Version-
Marel ≫ A571 Firmware Version-
Marel ≫ Check Bin Grader Firmware Version-
Marel ≫ Flowlineqc T376 Firmware Version-
Marel ≫ Ipm3 Dual Cam Firmware Version132
Marel ≫ Ipm3 Dual Cam Firmware Version139
Marel ≫ Ipm3 Dual Cam Firmware Version132
Marel ≫ P520 Firmware Version-
Marel ≫ P574 Firmware Version-
Marel ≫ Sensorx13 Qc Flow Line Firmware Version-
Marel ≫ Sensorx23 Qc Master Firmware Version-
Marel ≫ Sensorx23 Qc Slave Firmware Version-
Marel ≫ Speed Batcher Firmware Version-
Marel ≫ T374 Firmware Version-
Marel ≫ T377 Firmware Version-
Marel ≫ V36 Firmware Version-
Marel ≫ V36b Firmware Version-
Marel ≫ V36c Firmware Version-
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.55% | 0.651 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
CWE-259 Use of Hard-coded Password
The product contains a hard-coded password, which it uses for its own inbound authentication or for outbound communication to external components.
CWE-798 Use of Hard-coded Credentials
The product contains hard-coded credentials, such as a password or cryptographic key.