CVE-2023-49106
16.01.2024, 01:15
Missing Password Field Masking vulnerability in Hitachi Device Manager on Windows, Linux (Device Manager Agent component).This issue affects Hitachi Device Manager: before 8.8.5-04.Enginsight
Vendor | Product | Version |
---|---|---|
hitachi | device_manager | 𝑥 < 8.8.5-04 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-549 - Missing Password Field MaskingThe software does not mask passwords during entry, increasing the potential for attackers to observe and capture passwords.
- CWE-522 - Insufficiently Protected CredentialsThe product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.