Back

HIGH

AVEVA System Platform Cleartext Storage of Sensitive Information in Memory

Published Apr 11, 2022

Description

AVEVA System Platform 2020 stores sensitive information in cleartext, which may allow access to an attacker or a low-privileged user.

Affected products

Remediation

Vendor solution

AVEVA recommends users of affected versions upgrade to one of the versions listed below and apply the corresponding security update: • AVEVA System Platform 2020 R2 P01 and AVEVA System Platform 2020 R2: update to AVEVA System Platform 2020 R2 SP1 • AVEVA System Platform 2020: update to AVEVA System Platform 2020 P01

For more information on this issue, including security updates, please see Security Bulletin AVEVA-2021-007

Metrics

Weaknesses (2)

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner icscert
Published Apr 11, 2022
Updated Apr 16, 2025
Reserved Mar 2, 2022
CISA Vulnrichment
Updated Apr 16, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a