CVE-2019-18231

HIGH

Advantech Spectre RT ERT351 Firmware <= 5.1.3 - Cleartext Transmission of Sensitive Information

Title source: llm
STIX 2.1

Description

Advantech Spectre RT ERT351 Versions 5.1.3 and prior logins and passwords are transmitted in clear text form, which may allow an attacker to intercept the request.

References (2)

Core 2
Core References
Third Party Advisory, US Government Resource x_refsource_misc
https://us-cert.cisa.gov/ics/advisories/icsa-21-054-03

Scores

CVSS v3 7.5
EPSS 0.0012
EPSS Percentile 29.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-319
Status published
Products (1)
advantech/spectre_rt_ert351_firmware < 5.1.3
Published Mar 17, 2021
Tracked Since Feb 18, 2026