CVE-2018-12921

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
28/06/2018
Last modified:
31/08/2018

Description

Electro Industries GaugeTech Nexus devices allow remote attackers to obtain potentially sensitive information via a direct request for the meter_information.htm, diag_system.htm, or diag_dnp_lan_wan.htm URI.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:electroind:gaugetech_nexus_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:electroind:gaugetech_nexus:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools