VulnerabilityModified
CVE-2014-2359
OleumTech Wireless Sensor Network devices allow remote attackers to obtain sensitive information about sensor nodes or spoof devices by reading cleartext protocol data.
MEDIUM 5.9EPSS 1.42%
Does this matter?
Lower severity and a low EPSS score (1.42%). Track it; it rarely justifies an emergency change on its own.
Description
OleumTech Wireless Sensor Network devices allow remote attackers to obtain sensitive information about sensor nodes or spoof devices by reading cleartext protocol data.
- CVSS 3.0
- 5.9 MEDIUMCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 1.42% probability · 71th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- oleumtech/ft1 firmware · oleumtech/ad1 firmware
- Source
- ics-cert@hq.dhs.gov
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/94788Third Party Advisory, VDB Entry
- https://ioactive.com/pdfs/IOActive_Advisory_OleumTech.pdfBroken Link, Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/94788Third Party Advisory, VDB Entry
- https://ioactive.com/pdfs/IOActive_Advisory_OleumTech.pdfBroken Link, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.