CVE-2018-6624: Critical severity Omron Ns Series Firmware vulnerability
Published Feb 5, 2018
·Updated
OMRON NS devices 1.1 through 1.3 allow remote attackers to bypass authentication via a direct request to the .html file for a specific screen, as demonstrated by monitor.html.
Affected Software
14 affected components
Omron Ns Series Firmware>=1.1<=1.3
Omron Ns10
Omron Ns12
Omron Ns15
Omron Ns5
Omron Ns8
Omron Nsh5
All of the following
Omron Ns Series Firmware>=1.1<=1.3
Any of the following
Omron Ns10
Omron Ns12
Omron Ns15
Omron Ns5
Omron Ns8
Omron Nsh5
Event History
Feb 5, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
via NVD·06:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-6624?
CVE-2018-6624 is classified as a high severity vulnerability due to its potential to allow unauthorized access.
2
How do I fix CVE-2018-6624?
To mitigate CVE-2018-6624, update the firmware of your OMRON NS devices to a version later than 1.3.
3
Which versions of OMRON NS devices are affected by CVE-2018-6624?
CVE-2018-6624 affects OMRON NS devices running firmware versions from 1.1 to 1.3.
4
What type of attack does CVE-2018-6624 enable?
CVE-2018-6624 enables remote attackers to bypass authentication via direct requests to specific HTML files.
5
What is the impact of CVE-2018-6624?
The impact of CVE-2018-6624 can lead to unauthorized access to sensitive system functionalities on affected devices.