CVE-2017-6048
Last modified
CVE-2017-6048 is a vulnerability of currently unknown severity. A Command Injection issue was discovered in Satel Iberia SenNet Data Logger and Electricity Meters: SenNet Optimal DataLogger V5.37c-1.43c and prior, SenNet Solar Datalogger V5.03-1.56a and prior, and SenNet Multitask Meter V5.21a-1.18b and prior. Successful exploitation of this vulnerability could result in the attacker breaking out of the jailed shell and gaining full access to the system.. EPSS estimates a 15.54% chance of exploitation in the next 30 days.
Description
A Command Injection issue was discovered in Satel Iberia SenNet Data Logger and Electricity Meters: SenNet Optimal DataLogger V5.37c-1.43c and prior, SenNet Solar Datalogger V5.03-1.56a and prior, and SenNet Multitask Meter V5.21a-1.18b and prior. Successful exploitation of this vulnerability could result in the attacker breaking out of the jailed shell and gaining full access to the system.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Satel-Iberia | Sennet Multitask Meter | <= 5.21a-1.18b |
| Satel-Iberia | Sennet Optimal Datalogger | <= 5.37c-1.43c |
| Satel-Iberia | Sennet Solar Datalogger | <= 5.03-1.56a |
References
- https://ics-cert.us-cert.gov/advisories/ICSA-17-131-02Mitigation, Third Party Advisory, US Government Resource
- https://ics-cert.us-cert.gov/advisories/ICSA-17-131-02Mitigation, Third Party Advisory, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-6048?
How severe is CVE-2017-6048?
How do I fix CVE-2017-6048?
Are you affected by CVE-2017-6048?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
