CVE Published: 27/03/2023 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: icscert |
Vendor: SAUTER |
Product: EY-AS525F001 with moduWeb Status : PUBLISHED
CVE-2023-27927 Description
An authenticated malicious user could acquire the simple mail transfer protocol (SMTP) Password in cleartext format, despite it being protected and hidden behind asterisks. The attacker could then perform further attacks using the SMTP credentials.