ZeroHour

CVE-2018-11079

CVSS 3.0
7.8 high
EPSS
<1%p31
Published
()
Modified
Description

Dell EMC Secure Remote Services, versions prior to 3.32.00.08, contains a Plaintext Password Storage vulnerability. Database credentials are stored in plaintext in a configuration file. An authenticated malicious user with access to the configuration file may obtain the exposed password to gain access to the application database.

Vendors
emc
Products
secure remote services
Weakness
CWE-522
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.