CVE-2015-7931

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
24/12/2015
Last modified:
12/04/2025

Description

The Java client in Adcon Telemetry A840 Telemetry Gateway Base Station does not authenticate the station device, which allows man-in-the-middle attackers to spoof devices and obtain sensitive information by reading cleartext packet data, related to the lack of SSL support.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:adcon:a840_telemetry_gateway_base_station_firmware:*:*:*:*:*:*:*:*