CVE-2019-17216

CRITICAL

V-Zug Combi-Steam MSLQ <Ethernet R07 & WLAN R05 - Info Disclosure

Title source: llm
STIX 2.1

Description

An issue was discovered on V-Zug Combi-Steam MSLQ devices before Ethernet R07 and before WLAN R05. Password authentication uses MD5 to hash passwords. Cracking is possible with minimal effort.

Scores

CVSS v3 9.8
EPSS 0.0019
EPSS Percentile 40.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-916
Status published
Products (1)
vzug/combi-stream_mslq_firmware < ethernet_r07
Published Oct 06, 2019
Tracked Since Feb 18, 2026