Home
MEDIUM: 6.3 CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:NDefault status
unknown
All versions
affected
Default status
unknown
All versions
affected
Default status
unknown
All versions
affected
Default status
unknown
All versions
affected
Default status
unknown
All versions
affected
Default status
unknown
All versions
affected
Default status
unknown
All versions
affected
Default status
unknown
All versions
affected
Default status
unknown
All versions
affected
Default status
unknown
All versions
affected
Default status
unknown
All versions
affected
Default status
unknown
Before Ver. 1.4.2
affected
Default status
unknown
Before Ver. 1.7.2
affected
Default status
unknown
Before Ver. 1.6.0
affected
Default status
unknown
Before Ver. 1.5.0
affected
Default status
unknown
Before Ver. 1.4.2
affected
Default status
unknown
Before Ver. 1.4.2
affected
Default status
unknown
Before Ver. 1.3.2
affected
Default status
unknown
Before Ver. 2.5.0
affected
Default status
unknown
Before Ver. 1.5.3
affected
Default status
unknown
All versions
affected
Default status
unknown
All versions
affected
Default status
unknown
All versions
affected
Default status
unknown
Before Ver. 1.3.1
affected
Description
Missing Authorization vulnerability in NEC Platforms, Ltd. Aterm Series allows a attacker to get a specific device information and change the settings via network.
Problem types
CWE-862: Missing Authorization
Product status
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
Before Ver. 1.4.2
Before Ver. 1.7.2
Before Ver. 1.6.0
Before Ver. 1.5.0
Before Ver. 1.4.2
Before Ver. 1.4.2
Before Ver. 1.3.2
Before Ver. 2.5.0
Before Ver. 1.5.3
All versions
All versions
All versions
Before Ver. 1.3.1
Credits
Taizoh Tsukamoto of Mitsui Bussan Secure Directions, Inc.
References
jpn.nec.com/security-info/secinfo/nv26-001_en.html