Bosch
Bosch Rexroth Indramotion MLC L20 Firmware: vulnerabilidades y CVE
Bosch Rexroth Indramotion MLC L20 Firmware tiene 3 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE3
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2021-23858 | Alta (7.5) | 1.2% | — | 4 oct 2021 | Information disclosure: The main configuration, including users and their hashed passwords, is exposed by an unprotected web server resource and can be accessed without authentication. Additionally, device details are… |
| CVE-2021-23857 | Crítica (9.8) | 1.2% | — | 4 oct 2021 | Login with hash: The login routine allows the client to log in to the system not by using the password, but by using the hash of the password. Combined with CVE-2021-23858, this allows an attacker to subsequently login… |
| CVE-2021-23856 | Media (6.1) | 0.63% | — | 4 oct 2021 | The web server is vulnerable to reflected XSS and therefore an attacker might be able to execute scripts on a client’s computer by sending the client a manipulated URL. |