CVE-2023-1518

CP Plus KVMS Pro versions 2.01.0.T.190521 and prior are vulnerable to sensitive credentials being leaked because they are insufficiently protected.  
References
Link Resource
https://www.cisa.gov/news-events/ics-advisories/icsa-23-082-02 Third Party Advisory US Government Resource
https://www.cisa.gov/news-events/ics-advisories/icsa-23-082-02 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

cpe:2.3:a:cpplusworld:kvms_pro:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:39

Type Values Removed Values Added
References () https://www.cisa.gov/news-events/ics-advisories/icsa-23-082-02 - Third Party Advisory, US Government Resource () https://www.cisa.gov/news-events/ics-advisories/icsa-23-082-02 - Third Party Advisory, US Government Resource
CVSS v2 : unknown
v3 : 7.5
v2 : unknown
v3 : 7.8

07 Nov 2023, 04:04

Type Values Removed Values Added
Summary CP Plus KVMS Pro versions 2.01.0.T.190521 and prior are vulnerable to sensitive credentials being leaked because they are insufficiently protected. CP Plus KVMS Pro versions 2.01.0.T.190521 and prior are vulnerable to sensitive credentials being leaked because they are insufficiently protected.  

Information

Published : 2023-03-28 21:15

Updated : 2024-11-21 07:39


NVD link : CVE-2023-1518

Mitre link : CVE-2023-1518

CVE.ORG link : CVE-2023-1518


JSON object : View

Products Affected

cpplusworld

  • kvms_pro
CWE
CWE-522

Insufficiently Protected Credentials