ID

VAR-202103-1746


TITLE

WANJUN WJ95-RJ45 has a denial of service vulnerability

Trust: 0.6

sources: CNVD: CNVD-2021-12790

DESCRIPTION

WJ95-RJ45 is a collection module for the Internet of Things and Industrial Ethernet, which realizes the transparent data interaction between the sensor and the network. The data from the sensor can be forwarded to the network, or the data from the network can be forwarded to the sensor. WANJUN WJ95-RJ45 has a denial of service vulnerability. Attackers can use vulnerabilities to make the device denial of service by constructing specific network packets, which affects the normal operation of the controller.

Trust: 0.6

sources: CNVD: CNVD-2021-12790

IOT TAXONOMY

category:['IoT', 'ICS']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2021-12790

AFFECTED PRODUCTS

vendor:weijunruimodel:wj95-rj45scope:eqversion:1.0

Trust: 0.6

sources: CNVD: CNVD-2021-12790

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2021-12790
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2021-12790
severity: MEDIUM
baseScore: 6.1
vectorString: AV:A/AC:L/AU:N/C:N/I:N/A:C
accessVector: ADJACENT_NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 6.5
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2021-12790

EXTERNAL IDS

db:CNVDid:CNVD-2021-12790

Trust: 0.6

sources: CNVD: CNVD-2021-12790

SOURCES

db:CNVDid:CNVD-2021-12790

LAST UPDATE DATE

2022-05-04T09:21:24.744000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2021-12790date:2021-02-26T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2021-12790date:2021-03-12T00:00:00