Required CVE Record Information
Description
An open port used for debugging in SWARCOs CPU LS4000 Series with versions starting with G4... grants root access to the device without access control via network. A malicious user could use this vulnerability to get access to the device and disturb operations with connected devices.
CVSS 1 Total
Score | Severity | Version | Vector String |
---|---|---|---|
10.0 | CRITICAL | 3.1 | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H |
Credits
- Martin Aman (ProtectEM) reported this vulnerability.
- Coordinated by CERT@VDE.
References 1 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 1 Total
- https://cert.vde.com/de-de/advisories/vde-2020-016 x_transferred