← Back to CVE List

CVE-2020-25184

Published: 2022-03-18T18:15Z
Last Modified: 2024-11-21T05:17Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x stores the password in plaintext in a file that is in the same directory as the executable file. ISaGRAF Runtime reads the file and saves the data in a variable without any additional modification. A local, unauthenticated attacker could compromise the user passwords, resulting in information disclosure. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt