5.4
CVE-2020-11918
- EPSS 0.02%
- Veröffentlicht 07.11.2024 18:15:15
- Zuletzt bearbeitet 04.11.2025 18:15:38
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
An issue was discovered in Siime Eye 14.1.00000001.3.330.0.0.3.14. When a backup file is created through the web interface, information on all users, including passwords, can be found in cleartext in the backup file. An attacker capable of accessing the web interface can create the backup file.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Svakom ≫ Svakom Siime Eye Firmware Version14.1.00000001.3.330.0.0.3.14
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.02% | 0.054 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 5.4 | 2.8 | 2.5 |
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
|
CWE-312 Cleartext Storage of Sensitive Information
The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.