CVE-2019-17219

An issue was discovered on V-Zug Combi-Steam MSLQ devices before Ethernet R07 and before WLAN R05. By default, the device does not enforce any authentication. An adjacent attacker is able to use the network interface without proper access control.
References
Link Resource
https://vuldb.com/?id.134115 Permissions Required Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:vzug:combi-stream_mslq_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:vzug:combi-stream_mslq:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:vzug:combi-stream_mslq_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:vzug:combi-stream_mslq:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-10-06 16:15

Updated : 2024-02-04 20:39


NVD link : CVE-2019-17219

Mitre link : CVE-2019-17219

CVE.ORG link : CVE-2019-17219


JSON object : View

Products Affected

vzug

  • combi-stream_mslq
  • combi-stream_mslq_firmware
CWE
CWE-306

Missing Authentication for Critical Function