Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Westermo EDW-100 devices through 2024-05-03 allow an unauthenticated user to download a configuration file containing a cleartext password. NOTE: this is a serial-to-Ethernet converter that should not be placed at the edge of the network.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
N/A
Vulnerability Title
Westermo EDW-100 安全漏洞
Vulnerability Description
Westermo EDW-100是瑞典威斯特摩(Westermo)公司的一款串行以太网转换器。 Westermo EDW-100 2024-05-03及之前版本存在安全漏洞,该漏洞源于允许未经身份验证的用户下载包含明文密码的配置文件。
CVSS Information
N/A
Vulnerability Type
N/A