Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8h44-39jg-7c5x

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Schneider Electric StruxureWare Building Expert MPM before 2.15 does not use encryption for the client-server data stream, which allows remote attackers to discover credentials by sniffing the network.

Schneider Electric StruxureWare Building Expert MPM before 2.15 does not use encryption for the client-server data stream, which allows remote attackers to discover credentials by sniffing the network.

EPSS

Процентиль: 50%
0.00264
Низкий

Дефекты

CWE-522

Связанные уязвимости

nvd
больше 10 лет назад

Schneider Electric StruxureWare Building Expert MPM before 2.15 does not use encryption for the client-server data stream, which allows remote attackers to discover credentials by sniffing the network.

EPSS

Процентиль: 50%
0.00264
Низкий

Дефекты

CWE-522