First published: Wed May 22 2019(Updated: )
A CWE-798 use of hardcoded credentials vulnerability exists in BMX-NOR-0200H with firmware versions prior to V1.7 IR 19 which could cause a confidentiality issue when using FTP protocol.
Credit: cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider Electric BMXNOR0200H Firmware | =1.7-ir17 | |
Schneider Electric BMXNOR0200H Firmware | =1.7-ir18 | |
Schneider Electric BMXNOR0200H Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-6812 is classified as a confidentiality issue due to the use of hardcoded credentials.
To fix CVE-2019-6812, upgrade the firmware of the Schneider Electric BMX-NOR-0200H to version 1.7 IR 19 or later.
CVE-2019-6812 affects Schneider Electric BMX-NOR-0200H firmware versions 1.7 IR 17 and 1.7 IR 18.
CVE-2019-6812 can lead to unauthorized access due to hardcoded credentials, increasing the risk of data breaches.
There are no known workarounds for CVE-2019-6812; applying the firmware update is the recommended solution.