A vulnerability exists in the FOXMAN-UN/UNEM in which sensitive information is stored in cleartext within a resource that might be accessible to another control sphere.
Existe una vulnerabilidad en FOXMAN-UN/UNEM en la que información confidencial se almacena en texto plano dentro de un recurso que podrÃa ser accesible a otra esfera de control.
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N
| Attack Vector | LOCAL |
|---|---|
| Attack Complexity | HIGH |
| Privileges Required | HIGH |
| User Interaction | NONE |
| Scope | UNCHANGED |
| Confidentiality Impact | HIGH |
| Integrity Impact | NONE |
| Availability Impact | NONE |
| Source | Type | Description |
|---|---|---|
| [email protected] | Secondary |
en
CWE-312
|
| [email protected] | Primary |
en
CWE-312
|
| Vendor | Product | Version | Update | Type |
|---|---|---|---|---|
| hitachienergy | foxman-un | r15a | <built-in method update of dict object at 0x72a9ccf28e40> | Application |
| hitachienergy | foxman-un | r15b | <built-in method update of dict object at 0x72a9ccf2b9c0> | Application |
| hitachienergy | foxman-un | r16a | <built-in method update of dict object at 0x72a9ccf28c00> | Application |
| hitachienergy | foxman-un | r16b | <built-in method update of dict object at 0x72a9cdf01d80> | Application |
| hitachienergy | unem | r15a | <built-in method update of dict object at 0x72a9ccf2bbc0> | Application |
| hitachienergy | unem | r15b | <built-in method update of dict object at 0x72a9ccf29dc0> | Application |
| hitachienergy | unem | r16a | <built-in method update of dict object at 0x72a9ccf2a300> | Application |
| hitachienergy | unem | r16b | <built-in method update of dict object at 0x72a9b0ca44c0> | Application |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:a:hitachienergy:foxman-un:r15a:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:hitachienergy:foxman-un:r15b:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:hitachienergy:foxman-un:r16a:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:hitachienergy:foxman-un:r16b:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:hitachienergy:unem:r15a:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:hitachienergy:unem:r15b:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:hitachienergy:unem:r16a:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:hitachienergy:unem:r16b:*:*:*:*:*:*:* |