Vulnerabilities > Schneider Electric > Struxureware Building Expert Multi Purpose Management > Medium

DATE CVE VULNERABILITY TITLE RISK
2015-09-18 CVE-2015-3962 Insufficiently Protected Credentials vulnerability in Schneider-Electric Struxureware Building Expert Multi-Purpose Management
Schneider Electric StruxureWare Building Expert MPM before 2.15 does not use encryption for the client-server data stream, which allows remote attackers to discover credentials by sniffing the network.
network
low complexity
schneider-electric CWE-522
5.0