A vulnerability was found in SICUNET Access Controller 0.32-05z. It has been declared as problematic. This vulnerability affects unknown code of the component Password Storage. The manipulation leads to weak encryption. Attacking locally is a requirement.
The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.
Link | Tags |
---|---|
http://seclists.org/fulldisclosure/2017/Mar/25 | third party advisory mailing list |
https://vuldb.com/?id.98908 | third party advisory |