A vulnerability in WirelessHART-Gateway <= 3.0.9 could lead to information exposure of sensitive information
Vulnerability Description
In PEPPERL+FUCHS WirelessHART-Gateway <= 3.0.9 a form contains a password field with autocomplete enabled. The stored credentials can be captured by an attacker who gains control over the user's computer. Therefore the user must have logged in at least once.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-34560
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Pepperl+Fuchs reported this vulnerability. CERT@VDE coordinated.
More from Phoenix Contact
View All →Affected Vendor
Phoenix Contact
View all reports →