Delta Electronics DIALink versions 1.2.4.0 and prior stores sensitive information in cleartext, which may allow an attacker to have extensive access to the application directory and escalate privileges.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-24874 | Delta Electronics DIALink versions 1.2.4.0 and prior stores sensitive information in cleartext, which may allow an attacker to have extensive access to the application directory and escalate privileges. |
Fixes
Solution
No solution given by the vendor.
Workaround
Delta Electronics is aware of the vulnerabilities and is currently working on an update.
References
| Link | Providers |
|---|---|
| https://us-cert.cisa.gov/ics/advisories/icsa-21-294-02 |
|
History
No history.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-09-16T17:47:43.779Z
Reserved: 2021-08-10T00:00:00
Link: CVE-2021-38422
No data.
Status : Modified
Published: 2021-11-03T20:15:08.773
Modified: 2024-11-21T06:17:03.600
Link: CVE-2021-38422
No data.
OpenCVE Enrichment
No data.
EUVD