CVE-2018-7510

CRITICAL

BeaconMedaes TotalAlert Scroll <4107600010.23 - Info Disclosure

Title source: llm
STIX 2.1

Description

In the web application in BeaconMedaes TotalAlert Scroll Medical Air Systems running software versions prior to 4107600010.23, passwords are presented in plaintext in a file that is accessible without authentication.

Scores

CVSS v3 9.8
EPSS 0.0025
EPSS Percentile 47.9%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-522 CWE-256
Status published
Products (1)
beaconmedaes/scroll_medical_air_systems_firmware < 4107600010.23
Published Jun 06, 2018
Tracked Since Feb 18, 2026