A technical user has hardcoded credentials in Wallstreet Suite TRM 7.4.83 (64-bit edition) with higher privilege than the average authenticated user. NOTE: the vendor disputes this because the password is not hardcoded (it can be changed during installation or at any later time).
References
Configurations
History
21 Nov 2024, 06:26
Type | Values Removed | Values Added |
---|---|---|
References | () https://client-connect.iongroup.com/library/content/treasury-management/wallstreet-suite/security/suite-7-4-83/user-passwords/ - | |
References | () https://excellium-services.com/cert-xlm-advisory/CVE-2021-41320 - Third Party Advisory | |
References | () https://iongroup.com/ion-treasury/products/wallstreet-suite/ - Product, Vendor Advisory |
27 May 2024, 14:15
Type | Values Removed | Values Added |
---|---|---|
Summary | (en) A technical user has hardcoded credentials in Wallstreet Suite TRM 7.4.83 (64-bit edition) with higher privilege than the average authenticated user. NOTE: the vendor disputes this because the password is not hardcoded (it can be changed during installation or at any later time). | |
References |
|
Information
Published : 2021-10-15 16:15
Updated : 2024-11-21 06:26
NVD link : CVE-2021-41320
Mitre link : CVE-2021-41320
CVE.ORG link : CVE-2021-41320
JSON object : View
Products Affected
iongroup
- wallstreet_suite
CWE
CWE-798
Use of Hard-coded Credentials