Tuesday, November 7, 2017

ICS-CERT Updates Kabona Advisory

Today the DHS ICS-CERT published an update for a control system security advisory for the Kabona WebDatorCentral (WDC) application that was originally published on October 13th, 2016.


This update provides information on a new vulnerability; a plain-text storage of password vulnerability - CVE-2016-0872. There is no explanation of why this vulnerability was not reported in the original advisory. Apparently, the new version of the WDC software originally reported also corrects this ‘new’ vulnerability.

No comments:

 
/* Use this with templates/template-twocol.html */