PT-2023-21425 · Sauter+1 · Ey-As525F001 With Moduweb+1

Published

2023-03-27

·

Updated

2025-01-17

·

CVE-2023-27927

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided descriptions.
Description An authenticated malicious user could acquire the simple mail transfer protocol (SMTP) password in cleartext format, despite it being protected and hidden behind asterisks. The attacker could then perform further attacks using the SMTP credentials.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Cleartext Transmission of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2023-27927

Affected Products

Ey-As525F001 With Moduweb
Ey-As525F001 Firmware