ZeroHour

CVE-2019-17218

CVSS 3.1
9.1 critical
EPSS
<1%p50
Published
()
Modified
Description

An issue was discovered on V-Zug Combi-Steam MSLQ devices before Ethernet R07 and before WLAN R05. By default, the communication to the web service is unencrypted via http. An attacker is able to intercept and sniff communication to the web service.

Vendors
vzug
Products
combi-stream mslq firmware
Weakness
CWE-319
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.