CVE-2024-6785

MEDIUM

Configuration File - Info Disclosure

Title source: llm

Description

The configuration file stores credentials in cleartext. An attacker with local access rights can read or modify the configuration file, potentially resulting in the service being abused due to sensitive information exposure.

Scores

CVSS v3 5.5
EPSS 0.0008
EPSS Percentile 22.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Classification

CWE
CWE-312 CWE-313
Status published

Affected Products (2)

moxa/mxview_one < 1.4.1
moxa/mxview_one_central_manager

Timeline

Published Sep 21, 2024
Tracked Since Feb 18, 2026