CVE-2019-19106
Published: Apr 22, 2020
Modified: Aug 5, 2024
CVSS v3.1
9.1
Description
Improper implementation of Access Control in ABB Telephone Gateway TG/S 3.2 and Busch-Jaeger 6186/11 Telefon-Gateway allows an unauthorized user to access data marked as restricted, such as viewing or editing user profiles and application settings.
| Vendor | Product | Versions |
|---|---|---|
ABB | TG/S 3.2 Telephone Gateway | affected 2CDG 110 135 R0011 |
Busch-Jaeger | 6186/11 Telefon-Gateway | affected 2CKA006136A0187 |
Weaknesses (CWE)
CVSS v3.1 Details
CVSS v3.1 Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now