Twinsoft · Twinsoft Configuration Tool · CVE-2023-3395
**Name of the Vulnerable Software and Affected Versions**
TWinSoft Configuration Tool (affected versions not specified)
**Description**
The issue concerns the storage of encrypted passwords as plaintext in memory by the TWinSoft Configuration Tool. An attacker with access to system files could load a document into memory, gaining access to sensitive information, including passwords. The attacker could then use a memory viewer to obtain the plaintext password.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.