The web application portal of the Cobham EXPLORER 710, firmware version 1.07, sends the login password in cleartext. This could allow an unauthenticated, local attacker to intercept the password and gain access to the portal.
References
Link | Resource |
---|---|
https://kb.cert.org/vuls/id/719689/ | Third Party Advisory US Government Resource |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2019-10-10 13:15
Updated : 2019-10-17 09:31
NVD link : CVE-2019-9532
Mitre link : CVE-2019-9532
JSON object : View
CWE
CWE-319
Cleartext Transmission of Sensitive Information
Products Affected
cobham
- explorer_710_firmware
- explorer_710