Cleartext transmission of sensitive information in Ampla MES - CVE-2017-9637
Published: July 7, 2017
Ampla MES
Detailed vulnerability description
The weakness exists due to cleartext transmission of sensitive information. When connectivity to third party databases is configured to use a SQL user name and password, a local attacker sniff details from the connection string.
Successful exploitation may result in compromise of credentials used to connect to third party databases.