PT-2016-5114 · Alertwerks · Alertwerks Servsensor+3

Lee Ryman

·

Published

2016-05-30

·

Updated

2017-04-07

·

CVE-2016-2311

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions AlertWerks ServSensor versions prior to SP473 AlertWerks ServSensor Junior versions prior to SP473 AlertWerks ServSensor Junior with PoE versions prior to SP473 AlertWerks ServSensor Contact versions prior to SP473
Description The issue allows remote authenticated users to discover administrator and user passwords via unspecified vectors.
Recommendations For AlertWerks ServSensor, update the firmware to SP473 or later. For AlertWerks ServSensor Junior, update the firmware to SP473 or later. For AlertWerks ServSensor Junior with PoE, update the firmware to SP473 or later. For AlertWerks ServSensor Contact, update the firmware to SP473 or later.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-2311

Affected Products

Alertwerks Servsensor
Alertwerks Servsensor Contact
Alertwerks Servsensor Junior
Alertwerks Servsensor Junior With Poe