Unrated severityNVD Advisory· Published Aug 16, 2012· Updated Jun 16, 2026
CVE-2012-3025
CVE-2012-3025
Description
The default configuration of Tridium Niagara AX Framework through 3.6 uses a cleartext base64 format for transmission of credentials in cookies, which allows remote attackers to obtain sensitive information by sniffing the network.
Affected products
2- Range: <=3.6
Patches
Vulnerability mechanics
References
2- www.tridium.com/cs/tridium_news/security_patch_36nvdBroken LinkPatchVendor Advisory
- www.us-cert.gov/control_systems/pdf/ICSA-12-228-01.pdfnvdBroken LinkThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.