CVE-2023-27927
CVE-2023-27927

6.5MEDIUM

Key Information:

Vendor

Sauter

Vendor
CVE Published:
27 March 2023

What is CVE-2023-27927?

An authenticated malicious user could acquire the simple mail transfer protocol (SMTP) Password in cleartext format, despite it being protected and hidden behind asterisks. The attacker could then perform further attacks using the SMTP credentials.

Affected Version(s)

EY-AS525F001 with moduWeb all versions

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.