CVE-2018-17771 Information
Feb 14, 2021
cve
Description
Ingenico Telium 2 POS terminals have hardcoded FTP credentials. This is fixed in Telium 2 SDK v9.32.03 patch N.
CVSS Vector
CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Reference
https://ingenico.us/smart-terminals/telium2 https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html https://youtu.be/gtbS3Gr264w https://youtu.be/oyUD7RDJsJs
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
6.6
Share on: