CVE-2018-4855
6.5MEDIUMA vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions). Unencrypted storage of passwords in the client configuration files and during network transmission
게시됨: 7/3/2018업데이트됨: 11/21/2024
설명
A vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions). Unencrypted storage of passwords in the client configuration files and during network transmission could allow an attacker in a privileged position to obtain access passwords.
AI 분석AI 기반
영향받는 제품
siemenssiclock_tc400_firmware
-
siemenssiclock_tc400
-
siemenssiclock_tc100_firmware
-
siemenssiclock_tc100
-
참조
- http://www.securityfocus.com/bid/104672Third Party AdvisoryVDB Entry
- https://cert-portal.siemens.com/productcert/pdf/ssa-197012.pdfMitigationVendor Advisory
- http://www.securityfocus.com/bid/104672Third Party AdvisoryVDB Entry
- https://cert-portal.siemens.com/productcert/pdf/ssa-197012.pdfMitigationVendor Advisory