CVE Vulnerabilities

CVE-2025-22896

Cleartext Storage of Sensitive Information

Published: Feb 13, 2025 | Modified: Mar 04, 2025
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

mySCADA myPRO Manager

stores credentials in cleartext, which could allow an attacker to obtain sensitive information.

Weakness

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

Affected Software

NameVendorStart VersionEnd Version
MyproMyscada*1.4 (excluding)

Potential Mitigations

References