PoC Index

CVE-2019-3947

CRITICAL 9.8EPSS 1.6%

Fuji Electric V-Server before 6.0.33.0 stores database credentials in project files as plaintext. An attacker that can gain access to the project file can recover the database credentials and gain access to the database server.

CVSS v3.0
9.8 CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS
1.58% chance of exploitation in the next 30 days, 74th percentile
Published
2019-06-12
Updated
2024-08-04

Proof-of-concept exploits (1)

References

Related