"-Synchronized-Data."

This commit is contained in:
CVE Team 2023-02-03 07:00:57 +00:00
parent 96028621ec
commit 61a1d684de
No known key found for this signature in database
GPG Key ID: E3252B3D49582C98

View File

@ -34,7 +34,7 @@
"description_data": [
{
"lang": "eng",
"value": "Connectwise Automate 2022.11 is vulnerable to Cleartext authentication. Authentication is being done via HTTP (cleartext) with SSL disabled."
"value": "** DISPUTED ** Connectwise Automate 2022.11 is vulnerable to Cleartext authentication. Authentication is being done via HTTP (cleartext) with SSL disabled. OTE: the vendor's position is that, by design, this is controlled by a configuration option in which a customer can choose to use HTTP (rather than HTTPS) during troubleshooting."
}
]
},