CVE-2020-11918
5.4
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.5
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)
Description
An issue was discovered in Siime Eye 14.1.00000001.3.330.0.0.3.14. When a backup file is created through the web interface, information on all users, including passwords, can be found in cleartext in the backup file. An attacker capable of accessing the web interface can create the backup file.
Affected (1)
Products: Svakom: Svakom Siime Eye Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 14.1.00000001.3.330.0.0.3.14 |
| Running on/with | Platform Versions |
|---|---|
Svakom Svakom Siime Eye | All versions |
References (2)
Source: cve@mitre.org
ExploitMailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.