VDB
ICSA-19-024-02
ICSA-19-024-02
PUBLISHED
CVSS 8.800000190734863 HIGH
Successful exploitation of these vulnerabilities may allow attackers to have user privileges, gain access to the switch, read user credentials, deny access to the switch, or perform man-in-the-middle attacks.
Risk Scores
CVSS v3.1
8.800000190734863
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| FL SWITCH 3xxx 4xxx and 48xx: versions prior to Version 1.35 |
Timeline
- Jan 24, 2019 CVE Published
References
- https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/OT/white/2019/icsa-19-024-02.json advisory
- https://www.cisa.gov/news-events/ics-advisories/icsa-19-024-02 advisory
- https://www.cisa.gov/uscert/ics/alerts/ICS-ALERT-10-301-01 url
- https://www.cisa.gov/uscert/sites/default/files/recommended_practices/NCCIC_ICS-CERT_Defense_in_Depth_2016_S508C.pdf url
- https://www.cisa.gov/uscert/ics/tips/ICS-TIP-12-146-01B url
- https://cert.vde.com/de-de/advisories/vde-2019-001 fix