9.8

CVE-2018-20398

Exploit
Skyworth CM5100 V1.1.0, CM5100-440 V1.2.1, CM5100-511 4.1.0.14, CM5100-GHD00 V1.2.2, and CM5100.g2 4.1.0.17 devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.3.6.1.4.1.4491.2.4.1.1.6.1.2.0 SNMP requests.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Skyworthdigital ≫ Cm5100 Firmware Version 1.1.0
   Skyworthdigital ≫ Cm5100 Version 2.1
Skyworthdigital ≫ Cm5100-440 Firmware Version 1.2.1
   Skyworthdigital ≫ Cm5100-440 Version 2.1
Skyworthdigital ≫ Cm5100-511 Firmware Version 4.1.0.14
   Skyworthdigital ≫ Cm5100-511 Version 1.1
Skyworthdigital ≫ Cm5100-ghd00 Firmware Version 1.2.2
   Skyworthdigital ≫ Cm5100-ghd00 Version 2.1
Skyworthdigital ≫ Cm5100.G2 Firmware Version 4.1.0.17
   Skyworthdigital ≫ Cm5100.G2 Version 5.11
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.1% 0.793
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 9.8 3.9 5.9
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
CWE-522 Insufficiently Protected Credentials

The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.

https://github.com/ezelf/sensitivesOids/blob/master/oidpassswordleaks.csv
Third Party Advisory
https://misteralfa-hack.blogspot.com/2018/12/stringbleed-y-ahora-que-passwords-leaks.html
Third Party Advisory
Exploit