9.8
CVSSv3

CVE-2022-3089

Published: 13/02/2023 Updated: 07/11/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Echelon SmartServer 2.2 with i.LON Vision 2.2 stores cleartext credentials in a file, which could allow an malicious user to obtain cleartext usernames and passwords of the SmartServer. If the attacker obtains the file, then the credentials could be used to control the web user interface and file transfer protocol (FTP) server.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

echelon i.lon_vision 2.2

ICS Advisories

EnOcean SmartServer
Critical Infrastructure Sectors: Information Technology