CVE-2023-3395

CVSS V2 None CVSS V3 None
Description
​All versions of the TWinSoft Configuration Tool store encrypted passwords as plaintext in memory. An attacker with access to system files could open a file to load the document into memory, including sensitive information associated with document, such as password. The attacker could then obtain the plaintext password by using a memory viewer.
Overview
  • CVE ID
  • CVE-2023-3395
  • Assigner
  • icscert
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-07-03T20:04:17.653Z
  • Last Modified Date
  • 2023-07-03T20:04:17.653Z
References
Reference URL Reference Tags
https://www.cisa.gov/news-events/ics-advisories/icsa-23-180-03 government-resource
History
Created Old Value New Value Data Type Notes
2024-06-24 20:58:11 Added to TrackCVE