ZeroHour

CVE-2022-29733

PoC
CVSS 3.1
5.9 medium
EPSS
<1%p51
Published
()
Modified
Description

Delta Controls enteliTOUCH 3.40.3935, 3.40.3706, and 3.33.4005 was discovered to transmit and store sensitive information in cleartext. This vulnerability allows attackers to intercept HTTP Cookie authentication credentials via a man-in-the-middle attack.

Vendors
deltacontrols
Products
entelitouch firmware
Weakness
CWE-319
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.