OleumTech WIO DH2 Wireless Gateway and Sensor Wireless I/O Modules, when BreeZ is used, do not require authentication for reading the site security key, which allows physically proximate attackers to spoof communication by obtaining this key after use of direct hardware access or manual-setup mode.
References
Link | Resource |
---|---|
http://ics-cert.us-cert.gov/advisories/ICSA-14-202-01 | Third Party Advisory US Government Resource |
http://www.securityfocus.com/bid/68795 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2014-07-24 07:55
Updated : 2016-11-28 11:11
NVD link : CVE-2014-2361
Mitre link : CVE-2014-2361
JSON object : View
CWE
Products Affected
oleumtech
- wio_dh2_wireless_gateway
- sensor_wireless_i\/o_module