Unprotected storage of credentials in IDEC Corporation products - CVE-2021-20827

 

Unprotected storage of credentials in IDEC Corporation products - CVE-2021-20827

Published: January 7, 2022


Vulnerability identifier: #VU59297
CSH Severity: Low
CVSS v4: 7.2 [CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-20827
CWE-ID: CWE-256
Exploitation vector: Adjecent network
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to gain access to other users' credentials.

The vulnerability exists due to application stored credentials in plain text in a configuration file on the system. A remote attacker on the local network can obtain the PLC web server user credentials from file servers, backup repositories, or ZLD files saved in SD cards.


Affected software

FC6B MICROSmart All-in-One CPU Module
WindEDIT
FC6A MICROSmart Plus CPU Module
FC6B MICROSmart Plus CPU Module
FT1A Controller SmartAXIS Pro/Lite
FC6A MICROSmart All-in-One CPU Module
WindLDR
Data File Manager
WindEDIT Lite

How to mitigate CVE-2021-20827

Install updates from vendor's website.

FC6B MICROSmart All-in-One CPU Module - update to 2.40
FC6A MICROSmart Plus CPU Module - update to 2.40
FC6B MICROSmart Plus CPU Module - update to 2.40
FT1A Controller SmartAXIS Pro/Lite - update to 2.40
FC6A MICROSmart All-in-One CPU Module - update to 2.40
WindLDR - update to 8.20.0
Data File Manager - update to 2.13.0
WindEDIT Lite - update to 1.4.0

External References

Related Security Bulletins