PT-2017-9649 · Lynxspring · Lynxspring Jenesys Bas Bridge

Published

2017-02-13

·

Updated

2017-02-17

·

CVE-2016-8378

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Lynxspring JENEsys BAS Bridge versions 1.1.8 and older
Description The application's database lacks sufficient safeguards for protecting credentials.
Recommendations For versions 1.1.8 and older, consider implementing additional security measures to protect credentials, such as encryption or secure storage, until a patched version is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-8378

Affected Products

Lynxspring Jenesys Bas Bridge