CVE Vulnerabilities

CVE-2024-6785

Cleartext Storage in a File or on Disk

Published: Sep 21, 2024 | Modified: Sep 27, 2024
CVSS 3.x
7.1
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The configuration file stores credentials in cleartext. An attacker with local access rights can read or modify the configuration file, potentially resulting in the service being abused due to sensitive information exposure.

Weakness

The product stores sensitive information in cleartext in a file, or on disk.

Affected Software

NameVendorStart VersionEnd Version
Mxview_oneMoxa*1.4.1 (excluding)
Mxview_one_central_managerMoxa1.0.0 (including)1.0.0 (including)

References