CVE-2026-35556: Plaintext storage of a password in OpenPLC_V3
Published Apr 9, 2026
·Updated
OpenPLCV3 is vulnerable to a Plaintext Storage of a Password vulnerability that could allow an attacker to retrieve credentials and access sensitive information.
Affected Software
3 affected components
OpenPLC OpenPLC_V3
All of the following
Openplcproject Openplc V3 Firmware
Openplcproject Openplc V3
Event History
Apr 9, 2026
CVE Published
via MITRE·06:57 PM
Data Sourced
via MITRE·06:57 PM
DescriptionWeakness
Data Sourced
via NVD·07:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-35556?
CVE-2026-35556 has a high severity due to the potential exposure of sensitive credentials.
2
How do I fix CVE-2026-35556?
To fix CVE-2026-35556, implement secure password storage practices such as hashing and salting passwords.
3
What systems are affected by CVE-2026-35556?
CVE-2026-35556 affects OpenPLC_V3 software specifically.
4
What risks are associated with CVE-2026-35556?
The risks associated with CVE-2026-35556 include unauthorized access to sensitive information and system compromise.
5
Can attackers exploit CVE-2026-35556 remotely?
Yes, attackers could exploit CVE-2026-35556 remotely to retrieve plaintext passwords if they have network access.