Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. A world-readable /usr/smartrtu/init/settings.xml configuration file on the file system allows an attacker to read sensitive configuration settings such as usernames, passwords, and other sensitive RTU data due to insecure permission assignment.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mitsubishi Electric smartRTU和Inea ME-RTU 安全漏洞
Vulnerability Description
Mitsubishi Electric smartRTU是日本Mitsubishi Electric公司的一款智能远程终端单元(RTU)。Inea ME-RTU是斯洛文尼亚Inea公司的一款智能通信网关产品。 Mitsubishi Electric smartRTU 2.02及之前版本和INEA ME-RTU 3.0及之前版本中存在安全漏洞,该漏洞源于程序为文件系统上的/usr/smartrtu/init/settings.xml文件分配了全局可读权限。攻击者可利用该漏洞读取敏感的配置设置(例如:用户名、
CVSS Information
N/A
Vulnerability Type
N/A