An issue was discovered in UCI IDOL 2 (aka uciIDOL or IDOL2) through 2.12. Data is transferred over a raw socket without any authentication mechanism. Thus, communication endpoints are not verifiable.
The UCI IDOL 2 application transmits data via a raw socket without applying any authentication mechanism or verification of the identity of communication endpoints. The lack of access control (CWE-862) allows any entity on the network to connect to the communication channel and send or receive data without the need for any credentials. An attacker can thus impersonate an authorized endpoint or intercept an ongoing communication session.
An attacker can gain unauthorized access to transmitted data (breach of confidentiality) and manipulate communication — modify or inject data (breach of integrity). This enables man-in-the-middle attacks and takeover of the communication session.
Patches available from the manufacturer should be applied according to the references. The manufacturer — UCI (uci.de) — has published relevant materials at https://uci.de/products/index.html. Until the fix is applied, network access to UCI IDOL 2 services should be restricted to trusted hosts only using a firewall or network segmentation.
UCI IDOL 2 (also known as uciIDOL or IDOL2) in versions up to 2.12 inclusive
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:NUci Idol2
APPUci≤ 2.12
Related vulnerabilities
RCE i DoS w UCI IDOL 2 przez błędną deserializację i przepełnienie bufora
RCE i DoS w UCI IDOL 2 przez improper input validation i deserializację
RCE i DoS w UCI IDOL 2 przez nieprawidłową deserializację i walidację danych
An issue was discovered in UCI IDOL 2 (aka uciIDOL or IDOL2) through 2.12. Data is sent between client and ser...