CVE-2023-43777
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Oct 17, 2023
Updated: Oct 25, 2023
CWE ID 522
CWE ID 256
Summary
CVE-2023-43777: Eaton's easySoft software, used to configure intelligent relays, contains a vulnerability where the password used to secure project files is stored insecurely. An adversary with sufficient skills can retrieve these passwords, potentially gaining unauthorized access to protected files. This issue may pose a risk to the security of industrial control systems utilizing this software.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Eaton Corp Plc