A user without administrator permissions with access to the UC500 windows system could perform a memory dump of the running processes and extract clear credentials or valid session tokens.



Project Subscriptions

Vendors Products
Uc 500e Subscribe
Uc 500e Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2023-55483 A user without administrator permissions with access to the UC500 windows system could perform a memory dump of the running processes and extract clear credentials or valid session tokens.
Fixes

Solution

EFACEC has released UC 500E version 10.1.1. For more information, contact EFACEC support https://www.efacec.pt/en/contacts/ .


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2024-08-02T22:16:47.352Z

Reserved: 2023-12-11T16:37:13.794Z

Link: CVE-2023-50706

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-12-20T00:15:09.437

Modified: 2024-11-21T08:37:10.543

Link: CVE-2023-50706

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses