Back

MEDIUM

MXview One and MXview One Central Manager Series store cleartext credentials in a local file

Published Sep 21, 2024

Description

The configuration file stores credentials in cleartext. An attacker with local access rights can read or modify the configuration file, potentially resulting in the service being abused due to sensitive information exposure.

Affected products

Remediation

Vendor solution

Moxa has developed appropriate solutions to address vulnerability. The solutions for affected products are listed below.

* MXview One Series: Upgrade to the 1.4.1 version * MXview One Central Manager Series: Upgrade to the 1.0.3 version

Weaknesses (2)

References (3)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Moxa
Published Sep 21, 2024
Updated Sep 26, 2024
Reserved Jul 16, 2024
CISA Vulnrichment
Updated Sep 23, 2024
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner Moxa
Published Sep 21, 2024
Updated Sep 26, 2024
Exploited since n/a
EUVD-2024-47815