SOCOMEC MODULYS GP Netvision versions 7.20 and prior lack strong encryption for credentials on HTTP connections, which could result in threat actors obtaining sensitive information.
Metrics
Affected Vendors & Products
Source | ID | Title |
---|---|---|
![]() |
EUVD-2023-12417 | SOCOMEC MODULYS GP Netvision versions 7.20 and prior lack strong encryption for credentials on HTTP connections, which could result in threat actors obtaining sensitive information. |
Solution
No solution given by the vendor.
Workaround
SOCOMEC has not responded to requests to work with CISA to mitigate these vulnerabilities. Users of the affected product are encouraged to contact SOCOMEC customer support https://www.socomec.com/contact-us_en.html .
Link | Providers |
---|---|
https://www.cisa.gov/uscert/ics/advisories/icsa-23-024-02 |
![]() ![]() |
Thu, 16 Jan 2025 22:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-01-16T21:59:10.866Z
Reserved: 2023-01-17T20:38:16.469Z
Link: CVE-2023-0356

Updated: 2024-08-02T05:10:55.134Z

Status : Modified
Published: 2023-01-26T21:18:07.317
Modified: 2024-11-21T07:37:02.257
Link: CVE-2023-0356

No data.

No data.