SOCOMEC MODULYS GP Netvision versions 7.20 and prior lack strong...
Vulnerability Description
SOCOMEC MODULYS GP Netvision versions 7.20 and prior lack strong encryption for credentials on HTTP connections, which could result in threat actors obtaining sensitive information.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-0356
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Javier Fernandez Beré and Aarón Flecha Menéndez of S21sec reported this vulnerability to CISA.
Affected Vendor
SOCOMEC
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.