CVE-2022-4780

ISOS firmwares from versions 1.81 to 2.00 contain hardcoded credentials from embedded StreamX installer that integrators are not forced to change.
Configurations

Configuration 1 (hide)

cpe:2.3:o:elvexys:isos_firmware:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.8
v2 : unknown
v3 : 4.5
References () https://elvexys.com/products/xpg-gateway-rtu-protocol-converter/isos-release-notes/ - Release Notes, Vendor Advisory () https://elvexys.com/products/xpg-gateway-rtu-protocol-converter/isos-release-notes/ - Release Notes, Vendor Advisory

07 Nov 2023, 03:58

Type Values Removed Values Added
Summary ISOS firmwares from versions 1.81 to 2.00 contain hardcoded credentials from embedded StreamX installer that integrators are not forced to change. ISOS firmwares from versions 1.81 to 2.00 contain hardcoded credentials from embedded StreamX installer that integrators are not forced to change.

Information

Published : 2022-12-29 00:15

Updated : 2024-11-21 07:35


NVD link : CVE-2022-4780

Mitre link : CVE-2022-4780

CVE.ORG link : CVE-2022-4780


JSON object : View

Products Affected

elvexys

  • isos_firmware
CWE
CWE-798

Use of Hard-coded Credentials