An issue was discovered in Siime Eye 14.1.00000001.3.330.0.0.3.14. When a backup file is created through the web interface, information on all users, including passwords, can be found in cleartext in the backup file. An attacker capable of accessing the web interface can create the backup file.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://seclists.org/fulldisclosure/2024/Jul/14 |
History
Thu, 07 Nov 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-312 | |
Metrics |
cvssV3_1
|
Thu, 07 Nov 2024 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An issue was discovered in Siime Eye 14.1.00000001.3.330.0.0.3.14. When a backup file is created through the web interface, information on all users, including passwords, can be found in cleartext in the backup file. An attacker capable of accessing the web interface can create the backup file. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-11-07T00:00:00
Updated: 2024-11-07T20:43:56.414Z
Reserved: 2020-04-19T00:00:00
Link: CVE-2020-11918
Vulnrichment
Updated: 2024-11-07T20:42:39.652Z
NVD
Status : Awaiting Analysis
Published: 2024-11-07T18:15:15.450
Modified: 2024-11-08T19:01:03.880
Link: CVE-2020-11918
Redhat
No data.