CVE-2024-12057

CVSS V2 None CVSS V3 None
Description
User credentials (login & password) are inserted into log files when a user tries to authenticate using a version of a Web client that is not compatible with that of the PcVue Web back end. By exploiting this vulnerability, an attacker could retrieve the credentials of a user by accessing the Log File. Successful exploitation of this vulnerability could lead to unauthorized access to the application.
Overview
  • CVE ID
  • CVE-2024-12057
  • Assigner
  • arcinfo
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-12-09T19:08:15.527Z
  • Last Modified Date
  • 2024-12-09T19:08:15.527Z
References
Reference URL Reference Tags
https://www.pcvue.com/security/#SB2024-6 vendor-advisory
History
Created Old Value New Value Data Type Notes
2024-12-10 13:51:28 Added to TrackCVE