cvelist/2018/5xxx/CVE-2018-5477.json

64 lines
1.9 KiB
JSON
Raw Normal View History

2018-01-12 04:03:43 -05:00
{
"CVE_data_meta" : {
2018-02-20 14:04:56 -05:00
"ASSIGNER" : "ics-cert@hq.dhs.gov",
2018-01-12 04:03:43 -05:00
"ID" : "CVE-2018-5477",
2018-02-20 14:04:56 -05:00
"STATE" : "PUBLIC"
},
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "ABB netCADOPS Web Application",
"version" : {
"version_data" : [
{
"version_value" : "ABB netCADOPS Web Application"
}
]
}
}
]
},
"vendor_name" : "n/a"
}
]
}
2018-01-12 04:03:43 -05:00
},
"data_format" : "MITRE",
"data_type" : "CVE",
"data_version" : "4.0",
"description" : {
"description_data" : [
{
"lang" : "eng",
2018-02-20 14:04:56 -05:00
"value" : "An Information Exposure issue was discovered in ABB netCADOPS Web Application Version 3.4 and prior, netCADOPS Web Application Version 7.1 and prior, netCADOPS Web Application Version 7.2x and prior, netCADOPS Web Application Version 8.0 and prior, and netCADOPS Web Application Version 8.1 and prior. A vulnerability exists in the password entry section of netCADOPS Web Application that may expose critical database information."
}
]
},
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng",
"value" : "CWE-200"
}
]
}
]
},
"references" : {
"reference_data" : [
{
"url" : "https://ics-cert.us-cert.gov/advisories/ICSA-18-051-01"
2018-02-22 06:05:37 -05:00
},
{
"url" : "http://www.securityfocus.com/bid/103089"
2018-01-12 04:03:43 -05:00
}
]
}
}