CVE Database
/

CVE-2024-6785

Back to search

CVE-2024-6785

Published: Sep 21, 2024

Modified: Sep 26, 2024

PUBLISHED

CVSS v3.1

5.5

MEDIUM

Description

The configuration file stores credentials in cleartext. An attacker with local access rights can read or modify the configuration file, potentially resulting in the service being abused due to sensitive information exposure.

VendorProductVersions

Moxa

MXview One Series

affected
0 - < 1.3.0

Moxa

MXview One Central Manager Series

affected
0 - < 1.0.0

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Attack Vector

Local

Attack Complexity

Low

Privileges Required

Low

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

None

Availability

None

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now