"value":"CWE-1188: Initialization of a Resource with an Insecure Default vulnerability exists that could cause an\nattacker to execute unauthorized commands when a system\u2019s default password credentials have not been\nchanged on first use. The default username is not displayed correctly in the WebHMI interface."
}
]
},
"problemtype":{
"problemtype_data":[
{
"description":[
{
"lang":"eng",
"value":"CWE-1188 Insecure Default Initialization of Resource",
"cweId":"CWE-1188"
}
]
}
]
},
"affects":{
"vendor":{
"vendor_data":[
{
"vendor_name":"Schneider Electric",
"product":{
"product_data":[
{
"product_name":"WebHMI \u2013 Deployed with EcoStruxure Power Automation System",
"version":{
"version_data":[
{
"version_affected":"=",
"version_value":"WebHMI v4.1.0.0 and prior when deployed with EPAS User Interface 2.6.30.19 and prior"