CVE-2019-19105: ABB/Busch-Jaeger Telephone Gateway TG/S 3.2 Plaintext storing of credentials
Published Apr 22, 2020
·Updated
The backup function in ABB Telephone Gateway TG/S 3.2 and Busch-Jaeger 6186/11 Telefon-Gateway saves the current settings and configuration of the application, including credentials of existing user accounts and other configuration's credentials in plaintext.
Affected Software
4 affected components
ABB Tg\/s3.2 Firmware
ABB Tg\/s3.2
busch-jaeger 6186\/11 Firmware
busch-jaeger 6186\/11
Event History
Apr 22, 2020
CVE Published
via MITRE·02:35 PM
Data Sourced
via MITRE·02:35 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-19105.
2
What is the severity of CVE-2019-19105?
The severity of CVE-2019-19105 is medium.
3
What software is affected by CVE-2019-19105?
ABB Telephone Gateway TG/S 3.2 firmware and Busch-Jaeger 6186/11 Firmware are affected by CVE-2019-19105.
4
How does CVE-2019-19105 impact the affected software?
CVE-2019-19105 allows an attacker to access credentials of existing user accounts and other configuration's credentials in plaintext.
5
Is there a fix available for CVE-2019-19105?
Please refer to the vendor's website for the latest patches and updates to address CVE-2019-19105.