CVE-2016-2311

UnknownEPSS 1.15%

Last modified

CVE-2016-2311 is a vulnerability of currently unknown severity. Black Box AlertWerks ServSensor with firmware before SP473, AlertWerks ServSensor Junior with firmware before SP473, AlertWerks ServSensor Junior with PoE with firmware before SP473, and AlertWerks ServSensor Contact with firmware before SP473 allow remote authenticated users to discover administrator and user passwords via unspecified vectors.. EPSS estimates a 1.15% chance of exploitation in the next 30 days.

Description

Black Box AlertWerks ServSensor with firmware before SP473, AlertWerks ServSensor Junior with firmware before SP473, AlertWerks ServSensor Junior with PoE with firmware before SP473, and AlertWerks ServSensor Contact with firmware before SP473 allow remote authenticated users to discover administrator and user passwords via unspecified vectors.

Metrics

EPSS Probability
1.15%

62.8th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
BlackboxAlertwerks Servsensor Junior FirmwareAll versions
BlackboxAlertwerks Servsensor Contact FirmwareAll versions
BlackboxAlertwerks Servsensor FirmwareAll versions

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2016-2311?
Black Box AlertWerks ServSensor with firmware before SP473, AlertWerks ServSensor Junior with firmware before SP473, AlertWerks ServSensor Junior with PoE with firmware before SP473, and AlertWerks ServSensor Contact with firmware before SP473 allow remote authenticated users to discover administrator and user passwords via unspecified vectors.
How severe is CVE-2016-2311?
Severity scoring for CVE-2016-2311 is pending analysis. The EPSS model estimates a 1.15% probability of exploitation in the next 30 days.
How do I fix CVE-2016-2311?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2016-2311?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST