An issue was discovered in all versions of Bond JetSelect. Within the JetSelect Application, the web interface hides RADIUS secrets, WPA passwords, and SNMP strings from 'non administrative' users using HTML 'password field' obfuscation. By using Developer tools or similar, it is possible to change the obfuscation so that the credentials are visible.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-05-14T16:20:27

Updated: 2020-05-14T16:20:27

Reserved: 2019-06-28T00:00:00


Link: CVE-2019-13023

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-05-14T17:15:11.820

Modified: 2021-07-21T11:39:23.747


Link: CVE-2019-13023

JSON object: View

cve-icon Redhat Information

No data.