Release date:
Updated on:
Affected Systems:
Icp das usa. KingSCADA 3.0
Description:
--------------------------------------------------------------------------------
Bugtraq id: 51582
KingSCADA products are Windows-based control, monitoring, and data collection applications.
KingSCADA has the Certificate Information Leakage vulnerability. Remote attackers can exploit this vulnerability to obtain the Base64 password in the user. db file.
<* Source: Alexander R Polyakov
Link: http://www.us-cert.gov/control_systems/pdf/ICS-ALERT-12-020-06.pdf
Http://dsecrg.com/pages/vul/show.php? Id = 405
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Icp das usa.
------------
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.icpdas-usa.com/king_scada.php