A
n issue was discovered in Siime Eye 14.1.00000001.3.330.0.0.3.14. When a backup file is created through the web interface, information on all users, including passwords, can be found in cleartext in the backup file. An attacker capable of accessing the web interface can create the backup file.
References
| Link | Resource |
|---|---|
| https://seclists.org/fulldisclosure/2024/Jul/14 | Exploit Mailing List Third Party Advisory |
| http://seclists.org/fulldisclosure/2024/Jul/14 |
Configurations
Configuration 1 (hide)
| AND |
|
History
04 Nov 2025, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| References | () https://seclists.org/fulldisclosure/2024/Jul/14 - Exploit, Mailing List, Third Party Advisory |
24 Apr 2025, 13:42
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:svakom:svakom_siime_eye_firmware:14.1.00000001.3.330.0.0.3.14:*:*:*:*:*:*:* cpe:2.3:h:svakom:svakom_siime_eye:-:*:*:*:*:*:*:* |
|
| References | () https://seclists.org/fulldisclosure/2024/Jul/14 - Mailing List, Third Party Advisory, Exploit | |
| First Time |
Svakom
Svakom svakom Siime Eye Firmware Svakom svakom Siime Eye |
08 Nov 2024, 19:01
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
07 Nov 2024, 21:35
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.4 |
| CWE | CWE-312 |
07 Nov 2024, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-11-07 18:15
Updated : 2025-11-04 18:15
NVD link : CVE-2020-11918
Mitre link : CVE-2020-11918
CVE.ORG link : CVE-2020-11918
JSON object : View
Products Affected
CWE
CWE-312
Cleartext Storage of Sensitive Information