CVE-2018-17935

All versions of Telecrane F25 Series Radio Controls before 00.0A use fixed codes that are reproducible by sniffing and re-transmission. This can lead to unauthorized replay of a command, spoofing of an arbitrary message, or keeping the controlled load in a permanent "stop" state.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.1 HIGH
ADJACENT_NETWORK
LOW
NONE
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
icscertCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 50%
VendorProductVersion
telecranef25-2s_firmware
𝑥
< 00.0a
telecranef25-2d_firmware
𝑥
< 00.0a
telecranef25-4s_firmware
𝑥
< 00.0a
telecranef25-4d_firmware
𝑥
< 00.0a
telecranef25-6s_firmware
𝑥
< 00.0a
telecranef25-6d_firmware
𝑥
< 00.0a
telecranef25-8s_firmware
𝑥
< 00.0a
telecranef25-8d_firmware
𝑥
< 00.0a
telecranef25-10s_firmware
𝑥
< 00.0a
telecranef25-10d_firmware
𝑥
< 00.0a
telecranef25-60_firmware
𝑥
< 00.0a
𝑥
= Vulnerable software versions