VulnerabilityModified
CVE-2018-16705
FURUNO FELCOM 250 and 500 devices allow unauthenticated access to the xml/permission.xml file containing all of the system's usernames and passwords.
CRITICAL 9.8EPSS 1.57%
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.57%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
FURUNO FELCOM 250 and 500 devices allow unauthenticated access to the xml/permission.xml file containing all of the system's usernames and passwords. This includes the Admin and Service user accounts and their unsalted MD5 hashes, as well as the SMS server password in cleartext.
- CVSS 3.0
- 9.8 CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 1.57% probability · 74th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- furuno/felcom 250 firmware · furuno/felcom 500 firmware
- Source
- cve@mitre.org
References
- https://cyberskr.com/blog/furuno-felcom.htmlExploit, Technical Description, Third Party Advisory
- https://gist.github.com/CyberSKR/c00eabd6b1d5603d724b615ab358ff31Third Party Advisory
- https://cyberskr.com/blog/furuno-felcom.htmlExploit, Technical Description, Third Party Advisory
- https://gist.github.com/CyberSKR/c00eabd6b1d5603d724b615ab358ff31Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.