CVE-2019-6542

ENTTEC Datagate MK2, Storm 24, Pixelator all firmware versions prior to (70044,70050,70060)_update_05032019-482 allows an unauthenticated user to initiate a remote reboot, which may be used to cause a denial of service condition.
References
Link Resource
https://ics-cert.us-cert.gov/advisories/ICSA-19-085-03-0 Third Party Advisory US Government Resource
https://ics-cert.us-cert.gov/advisories/ICSA-19-085-03-0 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:enttec:datagate_mk2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:enttec:datagate_mk2:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:enttec:storm_24_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:enttec:storm_24:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:enttec:pixelator_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:enttec:pixelator:-:*:*:*:*:*:*:*

History

21 Nov 2024, 04:46

Type Values Removed Values Added
References () https://ics-cert.us-cert.gov/advisories/ICSA-19-085-03-0 - US Government Resource, Third Party Advisory () https://ics-cert.us-cert.gov/advisories/ICSA-19-085-03-0 - Third Party Advisory, US Government Resource

Information

Published : 2019-03-28 14:29

Updated : 2024-11-21 04:46


NVD link : CVE-2019-6542

Mitre link : CVE-2019-6542

CVE.ORG link : CVE-2019-6542


JSON object : View

Products Affected

enttec

  • datagate_mk2
  • datagate_mk2_firmware
  • storm_24_firmware
  • pixelator
  • pixelator_firmware
  • storm_24
CWE
CWE-306

Missing Authentication for Critical Function