VYPR
Medium severity5.3NVD Advisory· Published May 3, 2024· Updated Jun 17, 2026

CVE-2023-39467

CVE-2023-39467

Description

Triangle MicroWorks SCADA Data Gateway certificate Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Triangle MicroWorks SCADA Data Gateway. Authentication is not required to exploit this vulnerability.

The specific flaw exists within the configuration of certificate web directory. The issue results from the exposure of sensitive information in the application webroot. An attacker can leverage this vulnerability to disclose sensitive information. Was ZDI-CAN-20798.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:trianglemicroworks:scada_data_gateway:5.1.3.20324:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:trianglemicroworks:scada_data_gateway:5.1.3.20324:*:*:*:*:*:*:*
    • (no CPE)
    • (no CPE)range: 5.1.3.20324

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.