CVE-2018-5467
—CVSS 3.0
6.5 medium
EPSS
1%p68
Published
()
Modified
Description
An Information Exposure Through Query Strings in GET Request issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1000, MACH4000, MS, and OCTOPUS Classic Platform Switches. An information exposure through query strings vulnerability in the web interface has been identified, which may allow an attacker to impersonate a legitimate user.
- Vendors
- belden
- Products
- hirschmann rs20-0900mmm2tdau, hirschmann rs20-0900nnm4tdau, hirschmann rs20-0900vvm2tdau, hirschmann rs20-1600l2l2sdau, hirschmann rs20-1600l2m2sdau, hirschmann rs20-1600l2s2sdau, hirschmann rs20-1600l2t1sdau, hirschmann rs20-1600m2m2sdau, hirschmann rs20-1600m2t1sdau, hirschmann rs20-1600s2m2sdau, hirschmann rs20-1600s2s2sdau, hirschmann rs20-1600s2t1sdau
- Weakness
- CWE-598, CWE-200
- Vector
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.