Vulnerability Description
Entes EMG12 versions 2.57 and prior The application uses a web interface where it is possible for an attacker to bypass authentication with a specially crafted URL. This could allow for remote code execution.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Entes | Emg-12 Firmware | <= 2.57 |
| Entes | Emg-12 | - |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/105489Third Party AdvisoryVDB Entry
- https://ics-cert.us-cert.gov/advisories/ICSA-18-275-03Third Party AdvisoryUS Government Resource
- http://www.securityfocus.com/bid/105489Third Party AdvisoryVDB Entry
- https://ics-cert.us-cert.gov/advisories/ICSA-18-275-03Third Party AdvisoryUS Government Resource
FAQ
What is CVE-2018-14826?
CVE-2018-14826 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Entes EMG12 versions 2.57 and prior The application uses a web interface where it is possible for an attacker to bypass authentication with a specially crafted URL. This could allow for remote code ex...
How severe is CVE-2018-14826?
CVE-2018-14826 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2018-14826?
Check the references section above for vendor advisories and patch information. Affected products include: Entes Emg-12 Firmware, Entes Emg-12.