National Vulnerability Database

National Vulnerability Database

National Vulnerability
Database

Vulnerability Change Record for CVE-2018-11228

Change History

Initial Analysis - 7/31/2018 3:47:05 PM

Action Type Old Value New Value
Changed Reference Type
https://support.crestron.com/app/answers/answer_view/a_id/5471/~/the-latest-details-from-crestron-on-security-and-safety-on-the-internet No Types Assigned
https://support.crestron.com/app/answers/answer_view/a_id/5471/~/the-latest-details-from-crestron-on-security-and-safety-on-the-internet Vendor Advisory
Added CVSS V3
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Added CPE Configuration
AND
     OR
          *cpe:2.3:o:crestron:crestron_toolbox_protocol_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.001.0037.001
     OR
          cpe:2.3:h:crestron:dmc-str:-:*:*:*:*:*:*:*
          cpe:2.3:h:crestron:tsw-1060:-:*:*:*:*:*:*:*
          cpe:2.3:h:crestron:tsw-1060-nc:-:*:*:*:*:*:*:*
          cpe:2.3:h:crestron:tsw-560:-:*:*:*:*:*:*:*
          cpe:2.3:h:crestron:tsw-560-nc:-:*:*:*:*:*:*:*
          cpe:2.3:h:crestron:tsw-760:-:*:*:*:*:*:*:*
          cpe:2.3:h:crestron:tsw-760-nc:-:*:*:*:*:*:*:*
Added CWE
CWE-94
Added CVSS V2
(AV:N/AC:L/Au:N/C:C/I:C/A:C)