CVE-2020-24680
HIGHS+ Operations/S+ Historian - Info Disclosure
Title source: llmDescription
In S+ Operations and S+ Historian, the passwords of internal users (not Windows Users) are encrypted but improperly stored in a database.
References (2)
Scores
CVSS v3
7.0
EPSS
0.0004
EPSS Percentile
10.9%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-522
CWE-255
Status
published
Affected Products (10)
abb/symphony_\+_historian
abb/symphony_\+_historian
abb/symphony_\+_operations
abb/symphony_\+_operations
abb/symphony_\+_operations
abb/symphony_\+_operations
abb/symphony_\+_operations
abb/symphony_\+_operations
abb/symphony_\+_operations
abb/symphony_\+_operations
Timeline
Published
Dec 22, 2020
Tracked Since
Feb 18, 2026