Lucene search

K
cve[email protected]CVE-2010-4733
HistoryOct 03, 2022 - 4:21 p.m.

CVE-2010-4733

2022-10-0316:21:04
CWE-255
web.nvd.nist.gov
24
cve-2010-4733
webscada
ws100
ws200
easy connect
ec150
modbus rtu
tcp gateway
mb100
serial ethernet server
ss100
intellicom
netbiter
nb100
nb200
default username
default password
remote attackers
superadmin access
web interface
vulnerability

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

6.4 Medium

AI Score

Confidence

Low

0.012 Low

EPSS

Percentile

84.9%

WebSCADA WS100 and WS200, Easy Connect EC150, Modbus RTU - TCP Gateway MB100, and Serial Ethernet Server SS100 on the IntelliCom NetBiter NB100 and NB200 platforms have a default username and password, which makes it easier for remote attackers to obtain superadmin access via the web interface, a different vulnerability than CVE-2009-4463.

Affected configurations

NVD
Node
intellicomnetbiter_easyconnect_ec150
OR
intellicomnetbiter_modbus_rtu-tcp_gateway_mb100
OR
intellicomnetbiter_serial_ethernet_server_ss100
OR
intellicomnetbiter_webscada_ws100
OR
intellicomnetbiter_webscada_ws200
AND
intellicomnetbiter_nb100
OR
intellicomnetbiter_nb200

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

6.4 Medium

AI Score

Confidence

Low

0.012 Low

EPSS

Percentile

84.9%

Related for CVE-2010-4733