CVE-2019-6560

Severity CVSS v4.0:
Pending analysis
Type:
CWE-640 Weak Password Recovery Mechanism for Forgotten Password
Publication date:
23/03/2020
Last modified:
25/03/2020

Description

In Auto-Maskin RP210E Versions 3.7 and prior, DCU210E Versions 3.7 and prior and Marine Observer Pro (Android App), the software contains a mechanism for users to recover or change their passwords without knowing the original password, but the mechanism is weak.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:auto-maskin:rp210e_firmware:*:*:*:*:*:*:*:* 3.7 (including)
cpe:2.3:h:auto-maskin:rp210e:-:*:*:*:*:*:*:*
cpe:2.3:o:auto-maskin:dcu_210_firmware:*:*:*:*:*:*:*:* 3.7 (including)
cpe:2.3:h:auto-maskin:dcu_210:-:*:*:*:*:*:*:*
cpe:2.3:a:auto-maskin:marine_pro_observer:-:*:*:*:*:android:*:*


References to Advisories, Solutions, and Tools