First published: Tue Mar 06 2018(Updated: )
An Improper Restriction of Excessive Authentication Attempts issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1000, MACH4000, MS, and OCTOPUS Classic Platform Switches. An improper restriction of excessive authentication vulnerability in the web interface has been identified, which may allow an attacker to brute force authentication.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Belden Hirschmann RS20-0900MMM2TDAU | ||
Belden Hirschmann RS20-0900NNM4TDAU | ||
Belden Hirschmann RS20-0900MMM2TDAU | ||
Belden Hirschmann RS20-1600L2L2SDAU | ||
Belden Hirschmann RS20-1600L2M2SDAU | ||
Belden Hirschmann RS20-1600L2S2SDAU | ||
Belden Hirschmann RS20-1600L2T1SDAU | ||
Belden Hirschmann RS20-1600M2M2SDAU | ||
Belden Hirschmann RS20-1600M2T1SDAU | ||
Belden Hirschmann RS20-1600S2M2SDAU | ||
Belden Hirschmann RS20-1600S2S2SDAU | ||
Belden Hirschmann RS20-1600S2T1SDAU | ||
Belden Hirschmann RSR20 | ||
Belden Hirschmann RSR30 | ||
Belden Hirschmann RSB20-0800M2M2SAABE | ||
Belden Hirschmann RSB20-0800M2M2SAABE | ||
Belden Hirschmann RSB20-0800M2M2TAAB | ||
Belden Hirschmann RSB20-0800M2M2TAAB | ||
Belden Hirschmann RSB20-0800S2S2SAAB | ||
Belden Hirschmann RSB20-0800 S2S2 SAABE | ||
Belden Hirschmann RSB20-0800-S2-S2TAABE | ||
Belden Hirschmann RSB20-0800S2S2TAAB | ||
Belden Hirschmann RSB20-0800T1T1TAAB | ||
Belden Hirschmann RSB20-0800-T1T1SAAB | ||
Belden Hirschmann RSB20-0800T1T1TAAB | ||
Belden Hirschmann rsb20-0800t1t1taab | ||
Belden Hirschmann RSB20-0900M2TTSAABE | ||
Belden Hirschmann RSB20 | ||
Belden Hirschmann RSB20-0900M2TTTAABE | ||
Belden Hirschmann RSB20 | ||
Belden Hirschmann RSB20-0900MMM2SAAB | ||
Belden Hirschmann RSB20-0900MMM2SAABE | ||
Belden Hirschmann RSB20-0900MMM2TAABE | ||
Belden Hirschmann RSB20-0900MMM2TAABE | ||
Belden Hirschmann RSB20-0900S2TTSAAB | ||
Belden Hirschmann RSB20-0900S2TTSAABE | ||
Belden Hirschmann RSB20 | ||
Belden Hirschmann RSB20-0900-S2TTTAABE | ||
Belden Hirschmann rsb20-0900s2ttsaab | ||
Belden Hirschmann RSB20-0900VVM2SAABE | ||
Belden Hirschmann RSB20-0900VVM2TAAB | ||
Belden Hirschmann RSB20-0900VVM2TAAB | ||
Belden Hirschmann RSB20-0900-ZZZ6-SAAB | ||
Belden Hirschmann RSB20 Series | ||
Belden Hirschmann RSB20-0900 ZZZ6 TAAB | ||
Belden Hirschmann RSB20-0900-ZZZ6TAABE | ||
Belden Hirschmann M1-8SM-SC | ||
Belden Hirschmann m1-8sfp | ||
Belden Hirschmann M1-8SM-SC | ||
Belden Hirschmann m1-8tp-rj45 | ||
Belden Hirschmann mach102-24tp-f | ||
Belden Hirschmann mach102-24tp-f | ||
Belden Hirschmann mach102-8tp | ||
Belden Hirschmann MACH102-8TP-F | ||
Belden Hirschmann mach102-8tp-fr | ||
Belden Hirschmann MACH102-8TP-R | ||
Belden Hirschmann Mach104-16TX-POEP +2X -E-L3P | ||
Belden Hirschmann mach104-16tx-poep-l3p | ||
Belden Hirschmann mach104-16tx-poep +2x | ||
Belden Hirschmann mach104-16tx-poep +2x-l3p | ||
Belden Hirschmann mach104-16tx-poep | ||
Belden Hirschmann Mach104-16TX-POEP +2X -E-L3P | ||
Belden Hirschmann MACH104-16TX-POEP | ||
Belden Hirschmann mach104-16tx-poep | ||
Belden Hirschmann mach104-16tx-poep | ||
Belden Hirschmann mach104-16tx-poep | ||
Belden Hirschmann MACH104-16TX-POEP-R | ||
Belden Hirschmann MACH104-16TX-POEP-R | ||
Belden Hirschmann MACH104-20TX-F-L3P | ||
Belden Hirschmann MACH104-20TX-F-4POE | ||
Belden Hirschmann MACH104-20TX-F-L3P | ||
Belden Hirschmann MACH104-20TX-FR | ||
Belden Hirschmann MACH104-20TX-FR-L3P | ||
Belden Hirschmann mach4002-24g+3x-l2p | ||
Belden Hirschmann mach4002-24g+3x-l3e | ||
Belden Hirschmann mach4002-24g+3x-l3p | ||
Belden Hirschmann MACH4002-24G+3X-L2P | ||
Belden Hirschmann mach4002-24g+3x-l3e | ||
Belden Hirschmann mach4002-24g+3x-l3p | ||
Belden Hirschmann Mach4002-48G+3X-L2P | ||
Belden Hirschmann mach4002-48g+3x-l3e | ||
Belden Hirschmann mach4002-48g+3x-l3p | ||
Belden Hirschmann Mach4002-48G+3X-L2P | ||
Belden Hirschmann MACH4002-48G+3X-L3E | ||
Belden Hirschmann mach4002-48g+3x-l3p | ||
Belden Hirschmann Mice Switch Power | ||
Belden Hirschmann MS20-0800SAAE | ||
Belden Hirschmann ms20-0800saap | ||
Belden Hirschmann Mice Switch Power | ||
Belden Hirschmann Mice Switch Power | ||
Belden Hirschmann MS20-1600SAAP | ||
Belden Hirschmann MSP30 | ||
Belden Hirschmann MSP30 | ||
Belden Hirschmann MS30-1602SAAE | ||
Belden Hirschmann Octopus | ||
Belden Hirschmann Octopus | ||
Belden Hirschmann OCTOPUS | ||
Belden Hirschmann OCTOPUS 16m-train-bp | ||
Belden Hirschmann Octopus | ||
Belden Hirschmann OCTOPUS 24m-8 poe | ||
Belden Hirschmann OCTOPUS | ||
Belden Hirschmann OCTOPUS 24m-train-bp | ||
Belden Hirschmann Octopus | ||
Belden Hirschmann Octopus | ||
Belden Hirschmann Octopus | ||
Belden Hirschmann Octopus | ||
Belden Hirschmann OCTOPUS 8m-train | ||
Belden Hirschmann OCTOPUS 8m-train-bp | ||
Belden Hirschmann Octopus | ||
Belden Hirschmann OCTOPUS 8tx poe-eec | ||
Belden Hirschmann OCTOPUS | ||
Belden Hirschmann OCTOPUS os20-000900t5t5tafbhh | ||
Belden Hirschmann OCTOPUS os20-0010001m1mtrephh | ||
Belden Hirschmann OCTOPUS os20-0010001s1strephh | ||
Belden Hirschmann OCTOPUS os20-0010004m4mtrephh | ||
Belden Hirschmann OCTOPUS | ||
Belden Hirschmann OCTOPUS | ||
Belden Hirschmann OCTOPUS | ||
Belden Hirschmann OCTOPUS os24-080900t5t5tffbhh | ||
Belden Hirschmann OCTOPUS os24-080900t5t5tffbhh | ||
Belden Hirschmann OCTOPUS os24-081000t5t5tffuhb | ||
Belden Hirschmann OCTOPUS os24-081000t5t5tffuhb | ||
Belden Hirschmann Octopus | ||
Belden Hirschmann OCTOPUS os30 | ||
Belden Hirschmann OCTOPUS | ||
Belden Hirschmann OCTOPUS | ||
Belden Hirschmann OCTOPUS | ||
Belden Hirschmann OCTOPUS os32-080802o6o6tpephh | ||
Belden Hirschmann OCTOPUS | ||
Belden Hirschmann OCTOPUS os32-081602o6o6tpephh | ||
Belden Hirschmann OCTOPUS os32-081602t6t6tpephh | ||
Belden Hirschmann Octopus | ||
Belden Hirschmann OCTOPUS | ||
Belden Hirschmann OCTOPUS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-5469 is classified as high due to the potential for brute force attacks on the authentication mechanism.
To fix CVE-2018-5469, it is recommended to implement rate limiting on authentication attempts and update the device firmware to the latest version provided by Belden.
CVE-2018-5469 affects various models of Belden Hirschmann RS, RSR, RSB, MACH, and OCTOPUS series switches.
Yes, CVE-2018-5469 can be exploited remotely through the affected device's web interface.
CVE-2018-5469 is categorized as an improper restriction of excessive authentication attempts vulnerability.