Vulnerabilities > Atlascopco

DATE CVE VULNERABILITY TITLE RISK
2023-06-12 CVE-2023-1897 Cleartext Storage of Sensitive Information vulnerability in Atlascopco Power Focus 6000 Firmware
Atlas Copco Power Focus 6000 web server does not sanitize the login information stored by the authenticated user’s browser, which could allow an attacker with access to the user’s computer to gain credential information of the controller.
network
low complexity
atlascopco CWE-312
7.5
2023-06-12 CVE-2023-1898 Use of Insufficiently Random Values vulnerability in Atlascopco Power Focus 6000 Firmware
Atlas Copco Power Focus 6000 web server uses a small amount of session ID numbers.
network
low complexity
atlascopco CWE-330
7.5
2023-06-12 CVE-2023-1899 Unspecified vulnerability in Atlascopco Power Focus 6000 Firmware
Atlas Copco Power Focus 6000 web server is not a secure connection by default, which could allow an attacker to gain sensitive information by monitoring network traffic between user and controller.
network
low complexity
atlascopco
7.5