10
CVE-2018-12336
- EPSS 0.36%
- Veröffentlicht 17.06.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:45:01
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Undocumented Factory Backdoor in ECOS Secure Boot Stick (aka SBS) 5.6.5 allows the vendor to extract confidential information via remote root SSH access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ecos ≫ Secure Boot Stick Firmware Version5.6.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.36% | 0.575 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.