First published: Wed Jun 06 2018(Updated: )
In ABB IP GATEWAY 3.39 and prior, some configuration files contain passwords stored in plain-text, which may allow an attacker to gain unauthorized access.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Beronet Voice Over Internet Protocol Gateways Firmware | <=3.39 | |
ABB IP Gateway Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-7933 is classified as a low severity vulnerability due to the presence of plain-text passwords in configuration files.
To mitigate CVE-2017-7933, upgrade the ABB IP GATEWAY firmware to version 3.40 or later, which addresses this security issue.
CVE-2017-7933 affects ABB IP GATEWAY firmware version 3.39 and earlier.
An attacker can gain unauthorized access to the ABB IP GATEWAY by exploiting plain-text passwords stored in configuration files.
Best practices include regularly updating firmware, encrypting sensitive information, and implementing access controls to safeguard against vulnerabilities like CVE-2017-7933.