Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pq2c-46q4-qwg3

Опубликовано: 04 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Cleartext storage of sensitive information vulnerability exists in WindLDR and WindO/I-NV4. If this vulnerability is exploited, an attacker who obtained the product's project file may obtain user credentials of the PLC or Operator Interfaces. As a result, an attacker may be able to manipulate and/or suspend the PLC and Operator Interfaces by accessing or hijacking them.

Cleartext storage of sensitive information vulnerability exists in WindLDR and WindO/I-NV4. If this vulnerability is exploited, an attacker who obtained the product's project file may obtain user credentials of the PLC or Operator Interfaces. As a result, an attacker may be able to manipulate and/or suspend the PLC and Operator Interfaces by accessing or hijacking them.

EPSS

Процентиль: 63%
0.00455
Низкий

8.1 High

CVSS3

Дефекты

CWE-312

Связанные уязвимости

CVSS3: 8.1
nvd
больше 1 года назад

Cleartext storage of sensitive information vulnerability exists in WindLDR and WindO/I-NV4. If this vulnerability is exploited, an attacker who obtained the product's project file may obtain user credentials of the PLC or Operator Interfaces. As a result, an attacker may be able to manipulate and/or suspend the PLC and Operator Interfaces by accessing or hijacking them.

EPSS

Процентиль: 63%
0.00455
Низкий

8.1 High

CVSS3

Дефекты

CWE-312