Vulnerability Details CVE-2018-20385
CastleNet CBV38Z4EC 125.553mp1.39219mp1.899.007, CBV38Z4ECNIT 125.553mp1.39219mp1.899.005ITT, CBW383G4J 37.556mp5.008, and CBW38G4J 37.553mp1.008 devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.3.6.1.4.1.4491.2.4.1.1.6.1.2.0 SNMP requests.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 69.7%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 5.0
Products affected by CVE-2018-20385
-
cpe:2.3:h:castlenet:cbv38z4ec:1.0
-
cpe:2.3:h:castlenet:cbv38z4ecnit:1.0
-
cpe:2.3:h:castlenet:cbw383g4j:1.01
-
cpe:2.3:h:castlenet:cbw38g4j:1.0
-
cpe:2.3:o:castlenet:cbv38z4ec_firmware:25.553mp1.39219mp1.899.007
-
cpe:2.3:o:castlenet:cbv38z4ecnit_firmware:125.553mp1.39219mp1.899.005itt
-
cpe:2.3:o:castlenet:cbw383g4j_firmware:37.556mp5.008
-
cpe:2.3:o:castlenet:cbw38g4j_firmware:37.553mp1.008