GE Fanuc Proficy Real-Time Information Portal 2.6 and earlier uses HTTP Basic Authentication, which transmits usernames and passwords in base64-encoded cleartext and allows remote attackers to steal the passwords and gain privileges.
References
Configurations
History
No history.
Information
Published : 2008-01-29 02:00
Updated : 2025-04-09 00:30
NVD link : CVE-2008-0174
Mitre link : CVE-2008-0174
CVE.ORG link : CVE-2008-0174
JSON object : View
Products Affected
ge
- proficy_real-time_information_portal
CWE
CWE-312
Cleartext Storage of Sensitive Information