CVE-2019-5964

HIGH

iDoors Reader < 2.10.17 - Unauthenticated Authentication Bypass

Title source: llm
STIX 2.1

Description

iDoors Reader 2.10.17 and earlier allows an attacker on the same network segment to bypass authentication to access the management console and operate the product via unspecified vectors.

References (2)

Core 2
Core References
Vendor Advisory x_refsource_misc
https://idoors.jp/info/20190701
Third Party Advisory x_refsource_misc
https://jvn.jp/en/jp/JVN28218613/index.html

Scores

CVSS v3 8.8
EPSS 0.0072
EPSS Percentile 49.1%
Attack Vector ADJACENT_NETWORK
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-287
Status published
Products (1)
idoors/idoors_reader < 2.10.17
Published Jul 05, 2019
Tracked Since Feb 18, 2026