VYPR

Spectre Rt Ert351 Firmware

by Advantech

CVEs (3)

  • CVE-2019-18235CriMar 17, 2021
    risk 0.64cvss 9.8epss 0.01

    Advantech Spectre RT ERT351 Versions 5.1.3 and prior has insufficient login authentication parameters required for the web application may allow an attacker to gain full access using a brute-force password attack.

  • CVE-2019-18231HigMar 17, 2021
    risk 0.49cvss 7.5epss 0.01

    Advantech Spectre RT ERT351 Versions 5.1.3 and prior logins and passwords are transmitted in clear text form, which may allow an attacker to intercept the request.

  • CVE-2019-18233MedMar 17, 2021
    risk 0.40cvss 6.1epss 0.01

    In Advantech Spectre RT Industrial Routers ERT351 5.1.3 and prior, the affected product does not neutralize special characters in the error response, allowing attackers to use a reflected XSS attack.