CRITICAL
Davolink DVW-3200N all version prior to Version 1.00.06
Published Aug 1, 2018
9.8
CRITICALCVSS 3.0
EPSS 10.12%
Description
Davolink DVW-3200N all version prior to Version 1.00.06. The device generates a weak password hash that is easily cracked, allowing a remote attacker to obtain the password for the device.
Affected products
-
- Version all version prior to Version 1.00.06StatusaffectedConstraints-
- Version
AND
- < 1.00.06
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (3)
- http://www.securityfocus.com/bid/104940 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- https://ics-cert.us-cert.gov/advisories/ICSA-18-212-01 x_refsource_MISCMitigationThird Party AdvisoryUS Government Resource
- https://www.exploit-db.com/exploits/45076/ exploitx_refsource_EXPLOIT-DBThird Party AdvisoryVDB Entry
| Link | Providers | Tags |
|---|---|---|
| http://www.securityfocus.com/bid/104940 | vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry | |
| https://ics-cert.us-cert.gov/advisories/ICSA-18-212-01 | x_refsource_MISCMitigationThird Party AdvisoryUS Government Resource | |
| https://www.exploit-db.com/exploits/45076/ | exploitx_refsource_EXPLOIT-DBThird Party AdvisoryVDB Entry |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner icscert
Published Aug 1, 2018
Updated Sep 16, 2024
Reserved May 1, 2018
Link CVE-2018-10618
CISA Vulnrichment
Updated n/a