An Insufficiently Protected Credentials issue was discovered in LOYTEC LVIS-3ME versions prior to 6.2.0. The application does not sufficiently protect sensitive information from unauthorized access.
The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.
Link | Tags |
---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-17-257-01 | third party advisory us government resource |
http://www.securityfocus.com/bid/100847 | vdb entry third party advisory |