- EPSS 60.77%
- Veröffentlicht 28.10.2019 13:15:11
- Zuletzt bearbeitet 21.11.2024 04:27:42
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. An unauthenticated remote OS Command Injection vulnerability allows an attacker to execute arbitrary commands on the RTU due t...
CVE-2019-14925
- EPSS 0.27%
- Veröffentlicht 28.10.2019 13:15:10
- Zuletzt bearbeitet 21.11.2024 04:27:41
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. A world-readable /usr/smartrtu/init/settings.xml configuration file on the file system allows an attacker to read sensitive co...
CVE-2019-14926
- EPSS 0.36%
- Veröffentlicht 28.10.2019 13:15:10
- Zuletzt bearbeitet 21.11.2024 04:27:41
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. Hard-coded SSH keys allow an attacker to gain unauthorised access or disclose encrypted data on the RTU due to the keys not be...
CVE-2019-14927
- EPSS 25.33%
- Veröffentlicht 28.10.2019 13:15:10
- Zuletzt bearbeitet 21.11.2024 04:27:41
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. An unauthenticated remote configuration download vulnerability allows an attacker to download the smartRTU's configuration fil...
CVE-2019-14928
- EPSS 2.07%
- Veröffentlicht 28.10.2019 13:15:10
- Zuletzt bearbeitet 21.11.2024 04:27:42
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. A number of stored cross-site script (XSS) vulnerabilities allow an attacker to inject malicious code directly into the applic...
CVE-2019-14929
- EPSS 2.15%
- Veröffentlicht 28.10.2019 13:15:10
- Zuletzt bearbeitet 21.11.2024 04:27:42
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. Stored cleartext passwords could allow an unauthenticated attacker to obtain configured username and password combinations on ...
- EPSS 0.39%
- Veröffentlicht 28.10.2019 13:15:10
- Zuletzt bearbeitet 21.11.2024 04:27:42
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. Undocumented hard-coded user passwords for root, ineaadmin, mitsadmin, and maint could allow an attacker to gain unauthorised ...