CVE Database
/

CVE-2023-28713

Back to search

CVE-2023-28713

Published: Jun 1, 2023

Modified: Jan 9, 2025

PUBLISHED

Description

Plaintext storage of a password exists in CONPROSYS HMI System (CHS) versions prior to 3.5.3. Because account information of the database is saved in a local file in plaintext, a user who can access the PC where the affected product is installed can obtain the information. As a result, information in the database may be obtained and/or altered by the user.

VendorProductVersions

Contec Co., Ltd.

CONPROSYS HMI System (CHS)

affected
versions prior to 3.5.3

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now