PT-2019-11104 · Apc · Apc Ups Network Management Card 2

Published

2019-09-17

·

Updated

2023-03-01

·

CVE-2018-7820

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: APC UPS Network Management Card 2 AOS version 6.5.6
Description: A Credentials Management issue exists, which could cause Remote Monitoring Credentials to be viewed in plaintext when Remote Monitoring is enabled and then disabled.
Recommendations: For APC UPS Network Management Card 2 AOS version 6.5.6, consider disabling Remote Monitoring to prevent credentials from being viewed in plaintext until a fix is available.

Fix

Insufficiently Protected Credentials

Weakness Enumeration

Related Identifiers

CVE-2018-7820

Affected Products

Apc Ups Network Management Card 2