PT-2024-16045 · Topdata · Topdata Inner Rep Plus Webserver

J369

·

Published

2024-10-18

·

Updated

2024-11-06

·

CVE-2024-10122

CVSS v3.1

4.9

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Topdata Inner Rep Plus WebServer version 2.01
Description A vulnerability was found in the Operator Details Form component of the Topdata Inner Rep Plus WebServer, affecting an unknown function of the file /InnerRepPlus.html. This issue leads to missing password field masking, allowing for remote attacks. The vendor was contacted about this disclosure but did not respond.
Recommendations For Topdata Inner Rep Plus WebServer version 2.01, as a temporary workaround, consider implementing additional password masking measures until a patch is available. Restrict access to the Operator Details Form component to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2024-10122

Affected Products

Topdata Inner Rep Plus Webserver