CVE-2023-39452
Summary
| CVE | CVE-2023-39452 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-09-18 21:16:00 UTC |
| Updated | 2023-11-07 04:17:00 UTC |
| Description | ** UNSUPPPORTED WHEN ASSIGNED ** The web application that owns the device clearly stores the credentials within the user management section. Obtaining this information can be done remotely due to the incorrect management of the sessions in the web application. |
Risk And Classification
Problem Types: CWE-256
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Socomec | Modulys Gp | - | All | All | All |
| Operating System | Socomec | Modulys Gp Firmware | 01.12.10 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Socomec MOD3GP-SY-120K | CISA | MISC | www.cisa.gov | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.