Atlas Copco Power Focus 6000 web server does not sanitize the login information stored by the authenticated user’s browser, which could allow an attacker with access to the user’s computer to gain credential information of the controller.
References
Link Resource
https://www.cisa.gov/news-events/ics-advisories/icsa-23-159-01 Third Party Advisory US Government Resource
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: icscert

Published: 2023-06-12T19:18:57.026Z

Updated: 2023-06-12T19:18:57.026Z

Reserved: 2023-04-05T20:12:40.491Z


Link: CVE-2023-1897

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-06-12T20:15:11.417

Modified: 2023-11-07T04:05:18.483


Link: CVE-2023-1897

JSON object: View

cve-icon Redhat Information

No data.

CWE