CVE-2015-3972

EUVD-2015-4003
The web interface on Janitza UMG 508, 509, 511, 604, and 605 devices supports only short PIN values for authentication, which makes it easier for remote attackers to obtain access via a brute-force attack.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 71%
Affected Products (NVD)
VendorProductVersion
janitzaumg_508
-
janitzaumg_509
-
janitzaumg_511
-
janitzaumg_604
-
janitzaumg_605
-
𝑥
= Vulnerable software versions
Common Weakness Enumeration