CVE Published: 24/08/2022 |
CVE Updated: 16/09/2024 |
CVE Year: 2022 Source: icscert |
Vendor: ARC Informatique |
Product: PcVue 12 OAuth web service configuration Status : PUBLISHED
CVE-2022-2569 Description
The affected device stores sensitive information in cleartext, which may allow an authenticated user to access session data stored in the OAuth database belonging to legitimate users
Metrics
CVSS Version: 3.1 |
Base Score: 5.5 MEDIUM Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N