7.5
CVSSv3

CVE-2017-6019

Published: 07/04/2017 Updated: 16/08/2017
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 785
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

An issue exists in Schneider Electric Conext ComBox, model 865-1058, all firmware versions prior to V3.03 BN 830. A series of rapid requests to the device may cause it to reboot.

Vulnerable Product Search on Vulmon Subscribe to Product

schneider-electric conext_combox_865-1058_firmware

Exploits

#Exploit Title: Conext ComBox - Denial of Service (HTTP-POST) #Description: The exploit cause the device to self-reboot, constituting a denial of service #Google Dork: "Conext ComBox" + "JavaScript was not detected" /OR/ "Conext ComBox" + "Recover Lost Password" #Date: March 02, 2017 #Exploit Author: Mark Liapustin & Arik Kublanov #Vendor Home ...
Conext ComBox 865-1058 suffers from a denial of service vulnerability ...