Niewystarczająca enkrypcja może umożliwić uzyskanie poświadczeń używanych przez Emerson OpenEnterprise w wersji 3.3.5 i wcześniejszych do dostępu do urządzeń polowych i systemów zewnętrznych.
▸ Pokaż oryginał (EN)
Inadequate encryption may allow the credentials used by Emerson OpenEnterprise, up through version 3.3.5, to access field devices and external systems to be obtained.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:NEmerson Openenterprise Scada Server
APPEmerson≤ 3.3.5
Powiązane podatności
RCE z uprawnieniami systemowymi w Emerson OpenEnterprise SCADA Server
Heap-based Buffer Overflow w Emerson OpenEnterprise SCADA Server
Inadequate folder security permissions in Emerson OpenEnterprise versions through 3.3.4 may allow modification...
Inadequate encryption may allow the passwords for Emerson OpenEnterprise versions through 3.3.4 user accounts ...
Emerson Rosemount GC370XA/GC700XA/GC1500XA — zdalne RCE jako root bez uwierzytelnienia