JTEKT Electronics HMI ViewJet C-More Series Weak Password Encoding Vulnerability
Vulnerability
A vulnerability exists in the HMI ViewJet C-more series due to weak encoding of passwords. This issue allows a local authenticated attacker to obtain authentication information. The vulnerability affects all versions of the HMI ViewJet C-more series.
Impact
Exploitation of this vulnerability could lead to unauthorized access to project files, allowing attackers to retrieve stored passwords or change passwords to arbitrary values.
Remediation
JTEKT Electronics Corporation has ended support for the HMI ViewJet C-more series. Users are advised to apply the recommended workaround, which involves using a firewall or virtual private network (VPN) to prevent unauthorized access, and keeping project files in a secure location away from third-party access.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
