CVE-2015-6471

EUVD-2015-6412
Eaton Cooper Power Systems ProView 4.x and 5.x before 5.1 on Form 6 controls and Idea and IdeaPLUS relays does not properly initialize padding fields in Ethernet packets, which allows remote attackers to obtain sensitive information by reading packet data.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.3 MEDIUM
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 54%
Affected Products (NVD)
VendorProductVersion
eatonproview
4.0
eatonproview
5.0
eatonproview
5.0.1
eatonproview
5.0.2
eatonproview
5.0.3
eatonproview
5.0.4
eatonproview
5.0.5
eatonproview
5.0.6
eatonproview
5.0.7
eatonproview
5.0.8
eatonproview
5.0.9
eatonproview
5.0.10
𝑥
= Vulnerable software versions