CVE-2024-21869
EUVD-2024-1948002.02.2024, 00:15
In Rapid Software LLC's Rapid SCADA versions prior to Version 5.8.4, the affected product stores plaintext credentials in various places. This may allow an attacker with local access to see them.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| rapidscada | rapid_scada | 𝑥 ≤ 5.8.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-256 - Plaintext Storage of a PasswordStoring a password in plaintext may result in a system compromise.
- CWE-522 - Insufficiently Protected CredentialsThe product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.