6.5

CVE-2017-9645

An Inadequate Encryption Strength issue was discovered in Mirion Technologies DMC 3000 Transmitter Module, iPam Transmitter f/DMC 2000, RDS-31 iTX and variants (including RSD31-AM Package), DRM-1/2 and variants (including Solar PWR Package), DRM and RDS Based Boundary Monitors, External Transmitters, Telepole II, and MESH Repeater (Telemetry Enabled Devices). Decryption of data is possible at the hardware level.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MirionRds-31 Itx Firmware Version-
   MirionRds-31 Itx Version-
MirionDrm-2 Firmware Version-
   MirionDrm-2 Version-
MirionRds-31 Firmware Version-
   MirionRds-31 Version-
MirionTelepole 2 Firmware Version-
   MirionTelepole 2 Version-
MirionWrm2 Firmware Version-
   MirionWrm2 Version-
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.24% 0.149
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.5 2.8 3.6
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 3.3 6.5 2.9
AV:A/AC:L/Au:N/C:P/I:N/A:N
CWE-326 Inadequate Encryption Strength

The product stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required.

http://www.securityfocus.com/bid/100001
Third Party Advisory
VDB Entry
https://ics-cert.us-cert.gov/advisories/ICSA-17-208-02
Third Party Advisory
US Government Resource
Mitigation