Cleartext Password Exposure in Control Center Server by Siemens
CVE-2019-13947
4.9MEDIUM
What is CVE-2019-13947?
A vulnerability exists in the Control Center Server by Siemens where the user configuration menu in the web interface transmits user passwords in cleartext to the client's browser. This security flaw allows an attacker with administrative access to potentially view the passwords of other users. To safeguard your system and user data, it's critical to update to version 1.5.0 or later, which resolves this issue. For more information, refer to the product advisories linked below.
Affected Version(s)
Control Center Server (CCS) All versions < V1.5.0