Security Advisory

CVE-2023-28616

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-12-26 00:00:00
Last updated 2024-08-02 13:43:22
Assigner mitre
State PUBLISHED

Description

An issue was discovered in Stormshield Network Security (SNS) before 4.3.17, 4.4.x through 4.6.x before 4.6.4, and 4.7.x before 4.7.1. It affects user accounts for which the password has an equals sign or space character. The serverd process logs such passwords in cleartext, and potentially sends these logs to the Syslog component.