CVE-2021-42833: Use of hardcoded credentials impacting AquaView versions 1.60, 7.x, 8.x
Published Feb 7, 2022
·Updated
A Use of Hardcoded Credentials vulnerability exists in AquaView versions 1.60, 7.x, and 8.x that could allow an authenticated local attacker to manipulate users and system settings.
Affected Software
3 affected components
Xylem Aquaview>=7.0.0<8.0.1
Xylem Aquaview=1.60
Xylem, Inc. AquaView: Versions 1.60, 7.x, 8.x
Remediation
Information
Xylem recommends that AquaView customers implement new security settings.
Event History
Feb 7, 2022
CVE Published
via MITRE·07:01 PM
Data Sourced
via MITRE·07:01 PM
RemedyDescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2021-42833?
CVE-2021-42833 is classified as a moderate severity vulnerability due to its potential to allow authenticated local attackers to manipulate system settings.
2
How do I fix CVE-2021-42833?
To remediate CVE-2021-42833, ensure that hardcoded credentials are removed or replaced with dynamic authentication mechanisms.
3
Which versions of AquaView are affected by CVE-2021-42833?
CVE-2021-42833 affects AquaView versions 1.60, 7.x, and 8.x.
4
Who is the vendor associated with CVE-2021-42833?
The vendor associated with CVE-2021-42833 is Xylem, Inc.
5
What type of vulnerability is CVE-2021-42833?
CVE-2021-42833 is a Use of Hardcoded Credentials vulnerability that can impact system security.