Atlas Copco Power Focus 6000 web server does not sanitize the login information stored by the authenticated user’s browser, which could allow an attacker with access to the user’s computer to gain credential information of the controller.
References
Link | Resource |
---|---|
https://www.cisa.gov/news-events/ics-advisories/icsa-23-159-01 | Third Party Advisory US Government Resource |
https://www.cisa.gov/news-events/ics-advisories/icsa-23-159-01 | Third Party Advisory US Government Resource |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 07:40
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.cisa.gov/news-events/ics-advisories/icsa-23-159-01 - Third Party Advisory, US Government Resource | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.4 |
21 Jun 2023, 13:45
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
First Time |
Atlascopco power Focus 6000 Firmware
Atlascopco Atlascopco power Focus 6000 |
|
References | (MISC) https://www.cisa.gov/news-events/ics-advisories/icsa-23-159-01 - Third Party Advisory, US Government Resource | |
CPE | cpe:2.3:o:atlascopco:power_focus_6000_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:atlascopco:power_focus_6000:-:*:*:*:*:*:*:* |
12 Jun 2023, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-06-12 20:15
Updated : 2024-11-21 07:40
NVD link : CVE-2023-1897
Mitre link : CVE-2023-1897
CVE.ORG link : CVE-2023-1897
JSON object : View
Products Affected
atlascopco
- power_focus_6000
- power_focus_6000_firmware
CWE
CWE-312
Cleartext Storage of Sensitive Information