CVE-2022-3089

Severity CVSS v4.0:
Pending analysis
Type:
CWE-312 Cleartext Storage of Sensitive Information
Publication date:
13/02/2023
Last modified:
07/11/2023

Description

<br /> <br /> <br /> <br /> <br /> Echelon SmartServer 2.2 with i.LON Vision 2.2 stores cleartext credentials in a file, which could allow an attacker to obtain cleartext usernames and passwords of the SmartServer. If the attacker obtains the file, then the credentials could be used to control the web user interface and file transfer protocol (FTP) server. <br /> <br /> <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:echelon:i.lon_vision:2.2:*:*:*:*:*:*:*
cpe:2.3:h:echelon:smartserver:2.2:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools