ZDI-23-1034: Triangle MicroWorks SCADA Data Gateway get_config Missing Authentication Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Triangle MicroWorks SCADA Data Gateway. Authentication is not required to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-1034?
The severity of ZDI-23-1034 is critical due to its potential for unauthorized sensitive information disclosure.
How do I fix ZDI-23-1034?
To fix ZDI-23-1034, apply the latest security patches provided by Triangle MicroWorks for the SCADA Data Gateway.
Who is affected by ZDI-23-1034?
ZDI-23-1034 affects installations of Triangle MicroWorks SCADA Data Gateway that have not been secured against this vulnerability.
Can ZDI-23-1034 be exploited remotely?
Yes, ZDI-23-1034 can be exploited remotely without the need for authentication.
What kind of information can be disclosed by ZDI-23-1034?
ZDI-23-1034 allows attackers to disclose sensitive information that may be critical for the security of affected installations.