6.5
CVSSv3

CVE-2023-3395

Published: 03/07/2023 Updated: 07/11/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

?All versions of the TWinSoft Configuration Tool store encrypted passwords as plaintext in memory. An attacker with access to system files could open a file to load the document into memory, including sensitive information associated with document, such as password. The attacker could then obtain the plaintext password by using a memory viewer.

Vulnerable Product Search on Vulmon Subscribe to Product

ovarro tbox_ms-cpu32_firmware -

ovarro tbox_ms-cpu32-s2_firmware -

ovarro tbox_lt2_firmware -

ovarro tbox_tg2_firmware -

ovarro tbox_rm2_firmware -