SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2015-3971

The debug interface on Janitza UMG 508, 509, 511, 604, and 605 devices does not require authentication, which allows remote attackers to read or write to files, or execute arbitrary JASIC code, via a session on TCP port 1239.

HIGH 7.5EPSS 1.62%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (1.62%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

The debug interface on Janitza UMG 508, 509, 511, 604, and 605 devices does not require authentication, which allows remote attackers to read or write to files, or execute arbitrary JASIC code, via a session on TCP port 1239.

CVSS 2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
1.62% probability · 75th percentile
CISA KEV
Not listed
Weakness
CWE-284
Affected
janitza/umg 508 · janitza/umg 509 · janitza/umg 511 · janitza/umg 604 · janitza/umg 605
Source
ics-cert@hq.dhs.gov

References

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.