Unrated severityNVD Advisory· Published Jan 12, 2021· Updated Aug 4, 2024
CVE-2020-28390
CVE-2020-28390
Description
A vulnerability has been identified in Opcenter Execution Core (V8.2), Opcenter Execution Core (V8.3). The application contains an information leakage vulnerability in the handling of web client sessions. A local attacker who has access to the Web Client Session Storage could disclose the passwords of currently logged-in users.
Affected products
1- Range: V8.3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- cert-portal.siemens.com/productcert/pdf/ssa-604937.pdfmitrex_refsource_MISC
- www.zerodayinitiative.com/advisories/ZDI-21-051/mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.