CVE-2019-13553
published 2019-10-25CVE-2019-13553: Rittal Chiller SK 3232-Series web interface as built upon Carel pCOWeb firmware A1.5.3 – B1.2.4. The authentication mechanism on affected systems is configured…
PriorityP261critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
1.82%
76.0th percentile
Rittal Chiller SK 3232-Series web interface as built upon Carel pCOWeb firmware A1.5.3 – B1.2.4. The authentication mechanism on affected systems is configured using hard-coded credentials. These credentials could allow attackers to influence the primary operations of the affected systems, namely turning the cooling unit on and off and setting the temperature set point.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| carel | pcoweb_firmware | a1.5.3 – b1.2.4 | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Target device: Rittal Chiller SK 3232-Series web interface built on Carel pCOWeb firmware. Detect authentication attempts or configuration changes (on/off commands, temperature set point modifications) to this device on the network. ↗
- →CVE-2019-13549 (companion vulnerability): Critical functions such as turning the cooling unit on/off and setting the temperature set point can be triggered without any authentication — monitor for unauthenticated HTTP requests to the pCOWeb interface targeting these control functions. ↗
- ·Affected firmware version range is Carel pCOWeb A1.5.3 through B1.2.4; hard-coded credentials are baked into the authentication mechanism across this entire range. ↗
- ·No known public exploits specifically target these vulnerabilities at time of advisory publication (October 24, 2019), but exploitation requires only low skill level and is remotely exploitable. ↗
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Rittal Chiller SK 3232-Series
cisa_ics·2019-10-24·CVSS 7.5
[HIGH] Rittal Chiller SK 3232-Series
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Rittal Chiller SK 3232-Series
Last RevisedOctober 24, 2019
Alert CodeICSA-19-297-01
## 1. EXECUTIVE SUMMARY
- CVSS v3 9.1
- ATTENTION: Exploitable remotely/low skill level to exploit
- Vendor: Rittal
- Equipment: Rittal Chiller SK 3232-Series
- Vulnerabilities: Missing Authentication for Critical Function, Use of Hard-coded Credentials
## 2. RISK EVALUATION
Successful exploitation of these vulnerabilities could disrupt the primary operations of the affected component, shut down cooling to other equipment, and allow changes to the temperature set point.
## 3. TECHNICAL DET
GHSA
GHSA-6j53-rvq8-q9pr: Rittal Chiller SK 3232-Series web interface as built upon Carel pCOWeb firmware A1
ghsa_unreviewed·2022-05-24
CVE-2019-13553 [HIGH] GHSA-6j53-rvq8-q9pr: Rittal Chiller SK 3232-Series web interface as built upon Carel pCOWeb firmware A1
Rittal Chiller SK 3232-Series web interface as built upon Carel pCOWeb firmware A1.5.3 ? B1.2.4. The authentication mechanism on affected systems is configured using hard-coded credentials. These credentials could allow attackers to influence the primary operations of the affected systems, namely turning the cooling unit on and off and setting the temperature set point.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2019-10-25
Published