Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2020-12500


Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-XT (all versions) allows unauthenticated device administration.


Published

2020-10-15T19:15:11.440

Last Modified

2024-11-21T04:59:48.630

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:P/I:P/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

10.0

Impact Score

6.4

Weaknesses
  • Type: Primary
    CWE-306
  • Type: Secondary
    CWE-306

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System pepperl-fuchs es7510-xt_firmware * Yes
Hardware pepperl-fuchs es7510-xt - No
Operating System pepperl-fuchs es8509-xt_firmware * Yes
Hardware pepperl-fuchs es8509-xt - No
Operating System pepperl-fuchs es8510-xt_firmware * Yes
Hardware pepperl-fuchs es8510-xt - No
Operating System pepperl-fuchs es9528-xtv2_firmware * Yes
Hardware pepperl-fuchs es9528-xtv2 - No
Operating System pepperl-fuchs es7506_firmware * Yes
Hardware pepperl-fuchs es7506 - No
Operating System pepperl-fuchs es7510_firmware * Yes
Hardware pepperl-fuchs es7510 - No
Operating System pepperl-fuchs es7528_firmware * Yes
Hardware pepperl-fuchs es7528 - No
Operating System pepperl-fuchs es8508_firmware * Yes
Hardware pepperl-fuchs es8508 - No
Operating System pepperl-fuchs es8508f_firmware * Yes
Hardware pepperl-fuchs es8508f - No
Operating System pepperl-fuchs es8510_firmware * Yes
Hardware pepperl-fuchs es8510 - No
Operating System pepperl-fuchs es8510-xte_firmware * Yes
Hardware pepperl-fuchs es8510-xte - No
Operating System pepperl-fuchs es9528_firmware * Yes
Hardware pepperl-fuchs es9528 - No
Operating System pepperl-fuchs es9528-xt_firmware * Yes
Hardware pepperl-fuchs es9528-xt - No

References