Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-14481

Опубликовано: 24 фев. 2022
Источник: nvd
CVSS3: 7.8
CVSS2: 2.1
EPSS Низкий

Описание

The DeskLock tool provided with FactoryTalk View SE uses a weak encryption algorithm that may allow a local, authenticated attacker to decipher user credentials, including the Windows user or Windows DeskLock passwords. If the compromised user has an administrative account, an attacker could gain full access to the user’s operating system and certain components of FactoryTalk View SE.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:rockwellautomation:factorytalk_view:*:*:*:*:se:*:*:*
Версия до 9.0 (включая)
cpe:2.3:a:rockwellautomation:factorytalk_view:10.0:*:*:*:se:*:*:*

EPSS

Процентиль: 2%
0.00015
Низкий

7.8 High

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-261
CWE-326

Связанные уязвимости

CVSS3: 7.8
github
почти 4 года назад

The DeskLock tool provided with FactoryTalk View SE uses a weak encryption algorithm that may allow a local, authenticated attacker to decipher user credentials, including the Windows user or Windows DeskLock passwords. If the compromised user has an administrative account, an attacker could gain full access to the user’s operating system and certain components of FactoryTalk View SE.

EPSS

Процентиль: 2%
0.00015
Низкий

7.8 High

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-261
CWE-326