9.4

CVE-2017-9630

An Improper Authentication issue was discovered in PDQ Manufacturing LaserWash G5 and G5 S Series all versions, LaserWash M5, all versions, LaserWash 360 and 360 Plus, all versions, LaserWash AutoXpress and AutoExpress Plus, all versions, LaserJet, all versions, ProTouch Tandem, all versions, ProTouch ICON, all versions, and ProTouch AutoGloss, all versions. The web server does not properly verify that provided authentication information is correct.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
PdqincLaserwash G5 Firmware Version-
   PdqincLaserwash G5 Version-
PdqincLaserwash G5 S Firmware Version-
   PdqincLaserwash G5 S Version-
PdqincLaserwash M5 Firmware Version-
   PdqincLaserwash M5 Version-
PdqincLaserwash 360 Firmware Version-
   PdqincLaserwash 360 Version-
PdqincLaserjet Firmware Version-
   PdqincLaserjet Version-
PdqincProtouch Tandem Firmware Version-
   PdqincProtouch Tandem Version-
PdqincProtouch Icon Firmware Version-
   PdqincProtouch Icon Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.387
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.4 3.9 5.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
CWE-287 Improper Authentication

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.