#VU48550 Unprotected storage of credentials in Cisco IoT Field Network Director - CVE-2020-26079
Published: November 18, 2020 / Updated: November 19, 2020
Cisco IoT Field Network Director
Cisco Systems, Inc
Description
The vulnerability allows a remote user to gain access to other users' credentials.
The vulnerability exists due to application stored credentials in plain text in a configuration file on the system. A remote administrator can view contents of the configuration file and gain access to passwords for 3rd party integration.