Lucene search

K
cveTR-CERTCVE-2023-6518
HistoryFeb 08, 2024 - 12:15 p.m.

CVE-2023-6518

2024-02-0812:15:55
CWE-256
TR-CERT
web.nvd.nist.gov
20
cve-2023-6518
mia technology inc.
mi̇a-med
vulnerability
plaintext
password storage
security issue

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

EPSS

0.001

Percentile

37.2%

Plaintext Storage of a Password vulnerability in Mia Technology Inc. MİA-MED allows Read Sensitive Strings Within an Executable.This issue affects MİA-MED: before 1.0.7.

Affected configurations

Nvd
Node
miateknolojimia-medRange<1.0.7
VendorProductVersionCPE
miateknolojimia-med*cpe:2.3:a:miateknoloji:mia-med:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "MİA-MED",
    "vendor": "Mia Technology Inc.",
    "versions": [
      {
        "lessThan": "1.0.7",
        "status": "affected",
        "version": "0",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

EPSS

0.001

Percentile

37.2%

Related for CVE-2023-6518