CVE-2020-27184

Severity
5.9MEDIUM
EPSS
0.1%
top 75.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 14
Latest updateMay 24

Description

The NPort IA5000A Series devices use Telnet as one of the network device management services. Telnet does not support the encryption of client-server communications, making it vulnerable to Man-in-the-Middle attacks.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 2.2 | Impact: 3.6

🔴Vulnerability Details

2
GHSA
GHSA-7cmj-xmp5-mmr2: The NPort IA5000A Series devices use Telnet as one of the network device management services2022-05-24
CVEList
CVE-2020-27184: The NPort IA5000A Series devices use Telnet as one of the network device management services2021-05-14
CVE-2020-27184 (MEDIUM CVSS 5.9) | The NPort IA5000A Series devices us | cvebase.io