CVE-2022-27179

A malicious actor having access to the exported configuration file may obtain the stored credentials and thereby gain access to the protected resource. If the same passwords were used for other resources, further such assets may be compromised.
References
Link Resource
https://www.cisa.gov/uscert/ics/advisories/icsa-22-104-03 Mitigation Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:redlion:da50n_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:redlion:da50n:-:*:*:*:*:*:*:*

History

28 Apr 2022, 18:56

Type Values Removed Values Added
CPE cpe:2.3:o:redlion:da50n_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:redlion:da50n:-:*:*:*:*:*:*:*
References (MISC) https://www.cisa.gov/uscert/ics/advisories/icsa-22-104-03 - (MISC) https://www.cisa.gov/uscert/ics/advisories/icsa-22-104-03 - Mitigation, Third Party Advisory, US Government Resource
CVSS v2 : unknown
v3 : unknown
v2 : 4.0
v3 : 6.5
First Time Redlion da50n
Redlion da50n Firmware
Redlion

20 Apr 2022, 16:45

Type Values Removed Values Added
New CVE

Information

Published : 2022-04-20 16:15

Updated : 2023-12-10 14:22


NVD link : CVE-2022-27179

Mitre link : CVE-2022-27179

CVE.ORG link : CVE-2022-27179


JSON object : View

Products Affected

redlion

  • da50n_firmware
  • da50n
CWE
CWE-522

Insufficiently Protected Credentials