CVE-2019-6814
Published May 22, 2019
Last updated 2 years ago
Overview
- Description
- A CWE-287: Improper Authentication vulnerability exists in the NET55XX Encoder with firmware prior to version 2.1.9.7 which could cause impact to confidentiality, integrity, and availability when a remote attacker crafts a malicious request to the encoder webUI.
- Source
- cybersecurity@se.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 9.8
- Impact score
- 5.9
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- CRITICAL
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:schneider-electric:net5501_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A3FC01AE-6A9A-41B7-AED5-C0FE4CDE0FDE", "versionEndExcluding": "2.1.9.7" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:schneider-electric:net5501:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "56CAC6D2-90C4-4BFD-AC1C-DE1FA2D97D6D" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:schneider-electric:net5501-i_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "272F5867-C6BA-4B3B-9A7D-8AEFFF5CB78C", "versionEndExcluding": "2.1.9.7" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:schneider-electric:net5501-i:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "E5AC7E38-AC50-4921-904A-9396BA287EFB" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:schneider-electric:net5501-xt_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AC6B6743-5D3D-4178-A19F-975FBCC46FF5", "versionEndExcluding": "2.1.9.7" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:schneider-electric:net5501-xt:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "44A45E4C-7367-4FA6-98B6-FE3BD533A894" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:schneider-electric:net5504_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9B3ADFDE-F565-4F31-8AF4-6FC220C0A245", "versionEndExcluding": "2.1.9.7" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:schneider-electric:net5504:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "2BF4D959-932D-4A6C-A058-6841DC5DEE3B" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:schneider-electric:net5500_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1AEEC527-EC7F-44CA-9AF1-04638C85CD09", "versionEndExcluding": "2.1.9.7" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:schneider-electric:net5500:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "52FE10E6-80B0-4E11-B623-1BF13115B3BA" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:schneider-electric:net5516_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F52EBC2F-8E33-4481-AA8D-478273426BDB", "versionEndExcluding": "2.1.9.7" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:schneider-electric:net5516:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "817DD851-608A-42EF-AE9C-7FA23251B73E" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:schneider-electric:net5508_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "346636DB-EF82-4886-A25C-5EFC7AC8FBE7", "versionEndExcluding": "2.1.9.7" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:schneider-electric:net5508:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "2245DB26-48EC-4617-B007-70477EE16611" } ], "operator": "OR" } ], "operator": "AND" } ]