Published: 03/04/2020 Updated: 06/04/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

VISAM VBASE Editor version and VBASE Web-Remote Module may allow an unauthenticated malicious user to discover the cryptographic key from the web server and gain information about the login and the encryption/decryption mechanism, which may be exploited to bypass authentication of the HTML5 HMI web interface.

Vulnerability Trend

Affected Products

Vendor Product Versions
VisamVbase Editor11.5.0.2
VisamVbase Web-remote-