ZeroHour

CVE-2017-5160

CVSS 3.1
5.3 medium
EPSS
<1%p44
Published
()
Modified
Description

An Inadequate Encryption Strength issue was discovered in Schneider Electric Wonderware InTouch Access Anywhere, version 11.5.2 and prior. The software will connect via Transport Layer Security without verifying the peer's SSL certificate properly.

Vendors
aveva
Products
wonderware intouch access anywhere
Weakness
CWE-326
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.