CVE-2015-3968

high

Description

The FTP service on Janitza UMG 508, 509, 511, 604, and 605 devices has a default password, which makes it easier for remote attackers to read or write to files via a session on TCP port 21.

References

https://ics-cert.us-cert.gov/advisories/ICSA-15-265-03

Details

Source: MITRE

Published: 2015-10-28

Updated: 2015-10-28

Type: CWE-255

Risk Information

CVSS v2

Base Score: 7.5

Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 10

Severity: HIGH