Plaintext storage of a password vulnerability exists in +F FS040U software versions v2.3.4 and earlier, which may allow an attacker to obtain the login password of +F FS040U and log in to the management console.
The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.
Link | Tags |
---|---|
https://www.fsi.co.jp/mobile/plusF/news/22102801.html | vendor advisory |
https://www.fsi.co.jp/mobile/plusF/news/22102802.html | not applicable vendor advisory |
https://www.fsi.co.jp/mobile/plusF/news/22102803.html | not applicable vendor advisory |
https://www.fsi.co.jp/mobile/plusF/news/22102804.html | not applicable vendor advisory |
https://jvn.jp/en/jp/JVN74285622/index.html | third party advisory |