VYPR
Unrated severityNVD Advisory· Published Nov 10, 2022· Updated May 1, 2025

POWERCOM CO., LTD. UPSMON PRO - Insufficiently Protected Credentials

CVE-2022-38121

Description

UPSMON PRO configuration file stores user password in plaintext under public user directory. A remote attacker with general user privilege can access all users‘ and administrators' account names and passwords via this unprotected configuration file.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.