An Information Exposure issue was discovered in Schneider Electric Wonderware InTouch Access Anywhere, version 11.5.2 and prior. Credentials may be exposed to external systems via specific URL parameters, as arbitrary destination addresses may be specified.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2017-04-20T19:00:00
Updated: 2024-08-05T14:55:35.144Z
Reserved: 2017-01-03T00:00:00
Link: CVE-2017-5158
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-04-20T20:59:00.440
Modified: 2024-11-21T03:27:10.350
Link: CVE-2017-5158
Redhat
No data.