Credentials of built-in users are insecurely stored in the User directory of PcVue projects, all versions prior to 17.0.0. A local attacker could retrieve users’ credentials.
Active Directory accounts are not affected by this vulnerability.
References
| Link | Resource |
|---|---|
| https://www.pcvue.com/security/#SB2026-5 | Vendor Advisory |
Configurations
History
09 Jul 2026, 18:32
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:arcinfo:pcvue:*:*:*:*:*:*:*:* | |
| First Time |
Arcinfo pcvue
Arcinfo |
08 Jul 2026, 19:40
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Arcinformatique
Arcinformatique pcvue |
|
| References | () https://www.pcvue.com/security/#SB2026-5 - Vendor Advisory | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
| CPE | cpe:2.3:a:arcinformatique:pcvue:*:*:*:*:*:*:*:* |
07 Jul 2026, 10:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-07-07 10:16
Updated : 2026-07-09 18:32
NVD link : CVE-2026-14867
Mitre link : CVE-2026-14867
CVE.ORG link : CVE-2026-14867
JSON object : View
Products Affected
arcinfo
- pcvue
CWE
CWE-256
Plaintext Storage of a Password
