CVE-2020-28390
12.01.2021, 21:15
A vulnerability has been identified in Opcenter Execution Core (V8.2), Opcenter Execution Core (V8.3). The application contains an information leakage vulnerability in the handling of web client sessions. A local attacker who has access to the Web Client Session Storage could disclose the passwords of currently logged-in users.Enginsight
Vendor | Product | Version |
---|---|---|
siemens | opcenter_execution_core | 8.2 |
siemens | opcenter_execution_core | 8.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration