CVE-2018-8862
Summary
| CVE | CVE-2018-8862 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-05-25 16:29:00 UTC |
| Updated | 2019-10-09 23:42:00 UTC |
| Description | In ATI Systems Emergency Mass Notification Systems (HPSS16, HPSS32, MHPSS, and ALERT4000) devices, an improper authentication vulnerability caused by specially crafted malicious radio transmissions may allow an attacker to remotely trigger false alarms. |
Risk And Classification
Problem Types: CWE-287
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Atisystem | Alert4000 | - | All | All | All |
| Hardware | Atisystem | Alert4000 | - | All | All | All |
| Operating System | Atisystem | Alert4000 Firmware | - | All | All | All |
| Operating System | Atisystem | Alert4000 Firmware | - | All | All | All |
| Hardware | Atisystem | Hpss16 | - | All | All | All |
| Hardware | Atisystem | Hpss16 | - | All | All | All |
| Operating System | Atisystem | Hpss16 Firmware | - | All | All | All |
| Operating System | Atisystem | Hpss16 Firmware | - | All | All | All |
| Hardware | Atisystem | Hpss32 | - | All | All | All |
| Hardware | Atisystem | Hpss32 | - | All | All | All |
| Operating System | Atisystem | Hpss32 Firmware | - | All | All | All |
| Operating System | Atisystem | Hpss32 Firmware | - | All | All | All |
| Hardware | Atisystem | Mhpss | - | All | All | All |
| Hardware | Atisystem | Mhpss | - | All | All | All |
| Operating System | Atisystem | Mhpss Firmware | - | All | All | All |
| Operating System | Atisystem | Mhpss Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| ATI Systems Multiple Emergency Mass Notification Systems Products Multiple Security Vulnerabilities | BID | www.securityfocus.com | Third Party Advisory, VDB Entry |
| ATI Systems Emergency Mass Notification Systems | ICS-CERT | MISC | ics-cert.us-cert.gov | Mitigation, Third Party Advisory, US Government Resource |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.