CVE-2017-5146

HIGH

Carlo Gavazzi VMU-C <A11_U05/A17 - Info Disclosure

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2017-5146. Includes Metasploit module auxiliary/scanner/http/gavazzi_em_login_loot.

AI-analyzed exploit summary This Metasploit module targets Carlo Gavazzi Energy Meters, performing brute-force login, firmware enumeration, SMTP configuration extraction, and database dumping via an access control vulnerability. It exploits CVE-2017-5146 to retrieve sensitive data without authentication in older firmware versions.

Description

An issue was discovered in Carlo Gavazzi VMU-C EM prior to firmware Version A11_U05, and VMU-C PV prior to firmware Version A17. Sensitive information is stored in clear-text.

Exploits (1)

metasploit WORKING POC
rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/http/gavazzi_em_login_loot.rb

This Metasploit module targets Carlo Gavazzi Energy Meters, performing brute-force login, firmware enumeration, SMTP configuration extraction, and database dumping via an access control vulnerability. It exploits CVE-2017-5146 to retrieve sensitive data without authentication in older firmware versions.

Classification
Working Poc 95%
Attack Type
Info Leak | Auth Bypass
Complexity
Moderate
Reliability
Reliable
Target: Carlo Gavazzi VMU-C EM (firmware < A11_U05) and VMU-C PV (firmware < A17)
No auth needed
Prerequisites: Network access to the target device · HTTP service running on port 80 (default)
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/95411
Third Party Advisory, US Government Resource x_refsource_misc
https://ics-cert.us-cert.gov/advisories/ICSA-17-012-03

Scores

CVSS v3 7.5
EPSS 0.0932
EPSS Percentile 94.7%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-200
Status published
Products (3)
carlosgavazzi/vmu-c_em_firmware
carlosgavazzi/vmu-c_pv_firmware
n/a/Carlo Gavazzi VMU-C EM and VMU-C PV Carlo Gavazzi VMU-C EM and VMU-C PV
Published Feb 13, 2017
Tracked Since Feb 18, 2026