CVE-2024-21869
02.02.2024, 00:15
In Rapid Software LLC's Rapid SCADA versions prior toVersion 5.8.4, the affected product stores plaintext credentials in various places. This may allow an attacker with local access to see them.Enginsight
Vendor | Product | Version |
---|---|---|
rapidscada | rapid_scada | 𝑥 ≤ 5.8.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-256 - Plaintext Storage of a PasswordStoring a password in plaintext may result in a system compromise.
- CWE-522 - Insufficiently Protected CredentialsThe product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.