← back
CVE-2017-7920

CVE-2017-7920

EPSS 2.7%CWE-287
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 2.7%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
07 Aug 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
An Improper Authentication issue was discovered in ABB VSN300 WiFi Logger Card versions 1.8.15 and prior, and VSN300 WiFi Logger Card for React versions 2.1.3 and prior. By accessing a specific uniform resource locator (URL) on the web server, a malicious user is able to access internal information about status and connected devices without authenticating.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →