ID
VAR-E-201906-0133
CVE
cve_id: | CVE-2019-3946 | Trust: 0.3 |
cve_id: | CVE-2019-3947 | Trust: 0.3 |
TITLE
Fuji Electric V-Server Multiple Security Vulnerabilities
Trust: 0.3
DESCRIPTION
Fuji Electric V-Server is prone to multiple security vulnerabilities:
1. A remote denial-of-service vulnerability
2. An information disclosure vulnerability
An attacker can exploit these issues to cause a denial-of-service condition or obtain sensitive information that may lead to further attacks .
Versions prior to V-SFT 6.0.33.0 are vulnerable.
Trust: 0.3
AFFECTED PRODUCTS
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.9.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.8.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.7.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.6.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.5.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.4.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.32.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.31.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.30.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.3.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.29.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.28.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.27.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.26.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.25.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.24.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.23.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.22.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.21.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.20.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.2.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.19.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.18.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.17.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.16.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.15.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.14.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.13.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.12.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.11.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | eq | version: | 6.0.10.0 | Trust: 0.3 |
vendor: | fuji | model: | electric monitouch v-sft | scope: | ne | version: | 6.0.33.0 | Trust: 0.3 |
EXPLOIT
The researcher has created a proof-of-concept to demonstrate the issue. Please see the references for more information.
Trust: 0.3
PRICE
Free
Trust: 0.3
TYPE
Design Error
Trust: 0.3
CREDITS
Tenable
Trust: 0.3
EXTERNAL IDS
db: | TENABLE | id: | TRA-2019-27 | Trust: 0.3 |
db: | NVD | id: | CVE-2019-3946 | Trust: 0.3 |
db: | NVD | id: | CVE-2019-3947 | Trust: 0.3 |
db: | BID | id: | 108740 | Trust: 0.3 |
REFERENCES
url: | https://www.tenable.com/security/research/tra-2019-27 | Trust: 0.3 |
url: | http://www.fujielectric.com/ | Trust: 0.3 |
url: | https://monitouch.fujielectric.com/site/support-e/more-index-t.html | Trust: 0.3 |
SOURCES
db: | BID | id: | 108740 |
LAST UPDATE DATE
2022-07-27T09:56:05.544000+00:00
SOURCES UPDATE DATE
db: | BID | id: | 108740 | date: | 2019-06-11T00:00:00 |
SOURCES RELEASE DATE
db: | BID | id: | 108740 | date: | 2019-06-11T00:00:00 |