Lucene search

K
nvd[email protected]NVD:CVE-2013-2762
HistoryApr 04, 2013 - 11:58 a.m.

CVE-2013-2762

2013-04-0411:58:49
CWE-352
CWE-255
web.nvd.nist.gov

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.1 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

45.1%

The Schneider Electric Magelis XBT HMI controller has a default password for authentication of configuration uploads, which makes it easier for remote attackers to bypass intended access restrictions via crafted configuration data.

Affected configurations

NVD
Node
schneider-electricmagelis_xbt_hmiMatch-

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.1 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

45.1%

Related for NVD:CVE-2013-2762