Security Advisory

CVE-2019-6525

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-04-11 20:21:37
Last updated 2024-08-04 20:23:21
Assigner icscert
State PUBLISHED

Description

AVEVA Wonderware System Platform 2017 Update 2 and prior uses an ArchestrA network user account for authentication of system processes and inter-node communications. A user with low privileges could make use of an API to obtain the credentials for this account.