ID

VAR-202112-1089


TITLE

Unauthorized access vulnerability exists in ioLogik E1242 series of Mosaic Technology (Shanghai) Co., Ltd.

Trust: 0.6

sources: CNVD: CNVD-2021-92948

DESCRIPTION

The ioLogik E1242 series are daisy-chain Ethernet switches that support the most commonly used I/O data acquisition protocols and can match various applications. Mosha Technology (Shanghai) Co., Ltd. ioLogik E1242 series has unauthorized access vulnerabilities. Attackers can use vulnerabilities to obtain sensitive information and perform unauthorized operations.

Trust: 0.6

sources: CNVD: CNVD-2021-92948

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2021-92948

AFFECTED PRODUCTS

vendor:mosamodel:iologik e1242 series build17111512scope:eqversion:v3.0

Trust: 0.6

sources: CNVD: CNVD-2021-92948

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2021-92948
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2021-92948
severity: MEDIUM
baseScore: 6.4
vectorString: AV:N/AC:L/AU:N/C:P/I:P/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 4.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2021-92948

PATCH

title:Patch for Unauthorized access vulnerability exists in ioLogik E1242 series of Mosaic Technology (Shanghai) Co., Ltd.url:https://www.cnvd.org.cn/patchinfo/show/304331

Trust: 0.6

sources: CNVD: CNVD-2021-92948

EXTERNAL IDS

db:CNVDid:CNVD-2021-92948

Trust: 0.6

sources: CNVD: CNVD-2021-92948

SOURCES

db:CNVDid:CNVD-2021-92948

LAST UPDATE DATE

2022-05-04T09:27:31.098000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2021-92948date:2021-12-23T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2021-92948date:2021-12-30T00:00:00