Wonderware Information Server CVE-2014-2381 Weak Encryption Security Weakness
BID:69415
Info
Wonderware Information Server CVE-2014-2381 Weak Encryption Security Weakness
| Bugtraq ID: | 69415 |
| Class: | Design Error |
| CVE: |
CVE-2014-2381 |
| Remote: | No |
| Local: | Yes |
| Published: | Aug 26 2014 12:00AM |
| Updated: | Mar 19 2015 08:38AM |
| Credit: | Timur Yunusov, Ilya Karpov, Sergey Gordeychik, Alexey Osipov, and Dmitry Serebryannikov of the Positive Technologies Research Team |
| Vulnerable: |
Invensys Wonderware Information Server 4.5 Portal Invensys Wonderware Information Server 4.0 SP1 |
| Not Vulnerable: | |
Exploit / POC
Wonderware Information Server CVE-2014-2381 Weak Encryption Security Weakness
An attacker can use readily available utilities to exploit this issue.
An attacker can use readily available utilities to exploit this issue.
References
Wonderware Information Server CVE-2014-2381 Weak Encryption Security Weakness
References:
References: