This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Belwith-Keeler First view 2019-08-22
Product Hickory Smart Ethernet Bridge Firmware Last view 2019-08-22
Version Type Os
Update  
Edition  
Language  
Sofware Edition  
Target Software  
Target Hardware  
Other  

Activity : Overall

COMMON PLATFORM ENUMERATION: Repartition per Version

CPE Name Affected CVE
cpe:2.3:o:belwith-keeler:hickory_smart_ethernet_bridge_firmware:-:*:*:*:*:*:*:* 1

Related : CVE

  Date Alert Description
7.5 2019-08-22 CVE-2019-5635

A cleartext transmission of sensitive information vulnerability is present in Hickory Smart Ethernet Bridge from Belwith Products, LLC. Captured data reveals that the Hickory Smart Ethernet Bridge device communicates over the network to an MQTT broker without using encryption. This exposed the default username and password used to authenticate to the MQTT broker. This issue affects Hickory Smart Ethernet Bridge, model number H077646. The firmware does not appear to contain versioning information.

CWE : Common Weakness Enumeration

%idName
100% (1) CWE-319 Cleartext Transmission of Sensitive Information