Description
An attacker could retrieve passwords from a HTTP GET request from the Kunbus PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) if the attacker is in an MITM position.
Scores
CVSS v3
8.1
EPSS
0.0031
EPSS Percentile
53.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-598
Status
published
Products (1)
kunbus/pr100088_modbus_gateway_firmware
< 1.1.13166
Published
Apr 02, 2019
Tracked Since
Feb 18, 2026