CVE Published: 16/01/2024 |
CVE Updated: 13/11/2024 |
CVE Year: 2024 Source: INCIBE |
Vendor: Full Compass Systems |
Product: WIC1200 Status : PUBLISHED
CVE-2024-0556 Description
A Weak Cryptography for Passwords vulnerability has been detected on WIC200 affecting version 1.1. This vulnerability allows a remote user to intercept the traffic and retrieve the credentials from another user and decode it in base64 allowing the attacker to see the credentials in plain text.
Metrics
CVSS Version: 3.1 |
Base Score: 7.1 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N