WellinTech KingSCADA 3.0 uses a cleartext base64 format for storage of passwords in user.db, which allows context-dependent attackers to obtain sensitive information by reading this file.
                
            References
                    | Link | Resource | 
|---|---|
| http://www.us-cert.gov/control_systems/pdf/ICSA-12-129-01.pdf | Third Party Advisory US Government Resource | 
| http://dsecrg.com/pages/vul/show.php?id=405 | 
Configurations
                    Information
                Published : 2012-05-09 03:33
Updated : 2012-08-28 21:00
NVD link : CVE-2012-1977
Mitre link : CVE-2012-1977
JSON object : View
CWE
                
                    
                        
                        CWE-255
                        
            Credentials Management Errors
Products Affected
                wellintech
- kingview


