CVE-2021-41320

A technical user has hardcoded credentials in Wallstreet Suite TRM 7.4.83 (64-bit edition) with higher privilege than the average authenticated user. NOTE: the vendor disputes this because the password is not hardcoded (it can be changed during installation or at any later time).
Configurations

Configuration 1 (hide)

cpe:2.3:a:iongroup:wallstreet_suite:7.4.83:*:*:*:*:*:x64:*

History

21 Nov 2024, 06:26

Type Values Removed Values Added
References () https://client-connect.iongroup.com/library/content/treasury-management/wallstreet-suite/security/suite-7-4-83/user-passwords/ - () https://client-connect.iongroup.com/library/content/treasury-management/wallstreet-suite/security/suite-7-4-83/user-passwords/ -
References () https://excellium-services.com/cert-xlm-advisory/CVE-2021-41320 - Third Party Advisory () https://excellium-services.com/cert-xlm-advisory/CVE-2021-41320 - Third Party Advisory
References () https://iongroup.com/ion-treasury/products/wallstreet-suite/ - Product, Vendor Advisory () https://iongroup.com/ion-treasury/products/wallstreet-suite/ - Product, Vendor Advisory

27 May 2024, 14:15

Type Values Removed Values Added
Summary (en) A technical user has hardcoded credentials in Wallstreet Suite TRM 7.4.83 (64-bit edition) with higher privilege than the average authenticated user. (en) A technical user has hardcoded credentials in Wallstreet Suite TRM 7.4.83 (64-bit edition) with higher privilege than the average authenticated user. NOTE: the vendor disputes this because the password is not hardcoded (it can be changed during installation or at any later time).
References
  • () https://client-connect.iongroup.com/library/content/treasury-management/wallstreet-suite/security/suite-7-4-83/user-passwords/ -

Information

Published : 2021-10-15 16:15

Updated : 2024-11-21 06:26


NVD link : CVE-2021-41320

Mitre link : CVE-2021-41320

CVE.ORG link : CVE-2021-41320


JSON object : View

Products Affected

iongroup

  • wallstreet_suite
CWE
CWE-798

Use of Hard-coded Credentials