CVE-2024-6785

MEDIUM

Configuration File - Info Disclosure

Title source: llm
STIX 2.1

Description

The configuration file stores credentials in cleartext. An attacker with local access rights can read or modify the configuration file, potentially resulting in the service being abused due to sensitive information exposure.

Scores

CVSS v3 5.5
EPSS 0.0008
EPSS Percentile 22.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-312 CWE-313
Status published
Products (2)
moxa/mxview_one < 1.4.1
moxa/mxview_one_central_manager 1.0.0
Published Sep 21, 2024
Tracked Since Feb 18, 2026