PT-2015-4154 · Clorius Controls · Clorius Controls Java Web Client
Published
2015-01-17
·
Updated
2025-09-05
·
CVE-2014-9199
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Clorius Controls Java web client versions prior to 01.00.0009g
Description
The issue allows remote attackers to discover credentials by sniffing the network for cleartext-equivalent traffic.
Recommendations
For versions prior to 01.00.0009g, update to version 01.00.0009g or later to resolve the issue.
Fix
Inadequate Encryption Strength
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Clorius Controls Java Web Client