UPSMON PRO transmits sensitive data in cleartext over HTTP protocol. An unauthenticated remote attacker can exploit this vulnerability to access sensitive data.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-40724 | UPSMON PRO transmits sensitive data in cleartext over HTTP protocol. An unauthenticated remote attacker can exploit this vulnerability to access sensitive data. |
Fixes
Solution
Contact tech support from POWERCOM CO., LTD.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.twcert.org.tw/tw/cp-132-6681-e9650-1.html |
|
History
Thu, 01 May 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-05-01T19:07:13.585Z
Reserved: 2022-08-10T00:00:00.000Z
Link: CVE-2022-38122
Updated: 2024-08-03T10:45:52.532Z
Status : Modified
Published: 2022-11-10T15:15:14.343
Modified: 2024-11-21T07:15:50.303
Link: CVE-2022-38122
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD