Multiple Rangee GmbH RangeeOS 8.0.4 modules store credentials in plaintext including credentials of users for several external facing administrative services, domain joined users, and local administrators. To exploit the vulnerability a local attacker must have access to the underlying operating system.
References
Link | Resource |
---|---|
https://www.contextis.com/en/resources/advisories/cve-2020-16280 | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-08-20T15:22:58
Updated: 2020-08-20T15:22:58
Reserved: 2020-08-03T00:00:00
Link: CVE-2020-16280
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-08-20T16:15:11.440
Modified: 2020-08-26T13:43:00.417
Link: CVE-2020-16280
JSON object: View
Redhat Information
No data.
CWE