CVE-2026-14867

Severity CVSS v4.0:
MEDIUM
Type:
CWE-256 Plaintext Storage of a Password
Publication date:
07/07/2026
Last modified:
09/07/2026

Description

Credentials of built-in users are insecurely stored in the User directory of PcVue projects, all versions prior to 17.0.0. A local attacker could retrieve users’ credentials. <br /> <br /> Active Directory accounts are not affected by this vulnerability.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:arcinfo:pcvue:*:*:*:*:*:*:*:* 17.0.0 (excluding)


References to Advisories, Solutions, and Tools