A CWE-200: Information Exposure vulnerability exists in Modicon Controllers (M340 CPUs, M340 communication modules, Premium CPUs, Premium communication modules, Quantum CPUs, Quantum communication modules - see security notification for specific versions), which could cause the disclosure of FTP hardcoded credentials when using the Web server of the controller on an unsecure network.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published: 2019-11-20T22:01:49

Updated: 2024-08-04T20:31:04.426Z

Reserved: 2019-01-25T00:00:00

Link: CVE-2019-6852

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-11-20T22:15:12.030

Modified: 2019-11-22T15:04:49.903

Link: CVE-2019-6852

cve-icon Redhat

No data.