CVE Vulnerabilities

CVE-2023-31277

Unprotected Transport of Credentials

Published: Jul 06, 2023 | Modified: Jul 13, 2023
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

PiiGAB M-Bus transmits credentials in plaintext format.

Weakness

Login pages do not use adequate measures to protect the user name and password while they are in transit from the client to the server.

Affected Software

Name Vendor Start Version End Version
M-bus_900s_firmware Piigab - (including) - (including)

Potential Mitigations

References