CVE-2021-38422

Delta Electronics DIALink versions 1.2.4.0 and prior stores sensitive information in cleartext, which may allow an attacker to have extensive access to the application directory and escalate privileges.

Summary:

Delta Electronics DIALink versions 1.2.4.0 and prior stores sensitive information in cleartext, which may allow an attacker to have extensive access to the application directory and escalate privileges.

Reference Links(if available):

  • https://us-cert.cisa.gov/ics/advisories/icsa-21-294-02
  • CVSS Score (if available)

    v2: / MEDIUM

    v3: /

    Links to Exploits(if available)