CVE-2019-6527

CVE-2019-6527

Vendor Ics-Cert
Product PR100088 Modbus gateway
Weakness CWE-287 · Improper authentication
Published February 12, 2019
Last update September 17, 2024

CVSS base score

What the vulnerability does

01Description

PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) may allow an attacker to be able to change the password for an admin user who is currently or previously logged in, provided the device has not been restarted.

Key dates

02Disclosure timeline

February 12, 2019 CVE published
September 17, 2024 Record updated