PT-2017-3775 · Moxa · Moxa Eds+1
Published
2017-11-13
·
Updated
2020-10-19
·
CVE-2019-6518
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Moxa EDS and IKS (affected versions not specified)
Description
The issue is related to the storage of passwords in plaintext, which could allow an attacker to gain unauthorized access to sensitive information. This could potentially be exploited by someone with access to the device, allowing them to read sensitive information.
Recommendations
For Moxa EDS and IKS, consider restricting access to the devices to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Missing Encryption of Sensitive Data
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Moxa Eds
Moxa Iks