Hirschmann HiOS 07.1.01, 07.1.02, and 08.1.00 through 08.5.xx and HiSecOS 03.3.00 through 03.5.01 allow remote attackers to change the credentials of existing users.
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Hirschmann_hios | Belden | 08.1.00 (including) | 08.6.00 (excluding) |
Hirschmann_hios | Belden | 07.1.01 (including) | 07.1.01 (including) |
Hirschmann_hios | Belden | 07.1.02 (including) | 07.1.02 (including) |
Hisecos | Belden | 03.3.00 (including) | 03.5.01 (including) |