PT-2015-4154 · Clorius Controls · Clorius Controls Java Web Client
Publicado
2015-01-17
·
Atualizado
2025-09-05
·
CVE-2014-9199
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Clorius Controls Java web client versions prior to 01.00.0009g
Description
The issue allows remote attackers to discover credentials by sniffing the network for cleartext-equivalent traffic.
Recommendations
For versions prior to 01.00.0009g, update to version 01.00.0009g or later to resolve the issue.
Correção
Inadequate Encryption Strength
Information Disclosure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Clorius Controls Java Web Client