VYPR

GATE-E2

by Abb

CVEs (2)

  • CVE-2018-18995CriJan 3, 2019
    risk 0.64cvss 9.8epss 0.03

    Pluto Safety PLC Gateway Ethernet devices ABB GATE-E1 and GATE-E2 all versions do not allow authentication to be configured on administrative telnet or web interfaces, which could enable various effects vectors, including conducting device resets, reading or modifying registers,…

  • CVE-2018-18997MedJan 3, 2019
    risk 0.40cvss 6.1epss 0.01

    Pluto Safety PLC Gateway Ethernet devices in ABB GATE-E1 and GATE-E2 all versions allows an unauthenticated attacker using the administrative web interface to insert an HTML/Javascript payload into any of the device properties, which may allow an attacker to display/execute the…