Vulnerabilities > CVE-2012-1977 - Credentials Management vulnerability in Wellintech Kingview 3.0

047910
CVSS 7.1 - HIGH
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
NONE
Availability impact
NONE

Summary

WellinTech KingSCADA 3.0 uses a cleartext base64 format for storage of passwords in user.db, which allows context-dependent attackers to obtain sensitive information by reading this file.

Vulnerable Configurations

Part Description Count
Application
Wellintech
1

Common Weakness Enumeration (CWE)