CVE-2018-10612
CVE-2018-10612
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
29 Jan 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
In 3S-Smart Software Solutions GmbH CODESYS Control V3 products prior to version 3.5.14.0, user access management and communication encryption is not enabled by default, which could allow an attacker access to the device and sensitive information, including user credentials.
Affected products
3S-Smart · 3S-Smart Software Solutions GmbH CODESYS Control V3 products prior to version 3.5.14.0Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →