Information Exposure in Hirschmann Industrial Switches by Belden
CVE-2018-5467

6.5MEDIUM

What is CVE-2018-5467?

An information exposure vulnerability may allow unauthorized access to sensitive data through query strings in GET requests on the web interface of various Belden Hirschmann industrial switches. This flaw could enable an attacker to impersonate legitimate users and gain access to potentially sensitive operations and configurations.

Affected Version(s)

Hirschmann Automation and Control GmbH Classic Platform Switches Hirschmann Automation and Control GmbH Classic Platform Switches

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.