CVE-2016-2307
https://notcve.org/view.php?id=CVE-2016-2307
American Auto-Matrix Aspect-Nexus Building Automation Front-End Solutions application before 3.0.0 and Aspect-Matrix Building Automation Front-End Solutions application allow remote attackers to read arbitrary files via unspecified vectors, as demonstrated by the configuration file. Aplicación American Auto-Matrix Aspect-Nexus Building Automation Front-End Solutions en versiones anteriores a 3.0.0 y aplicación Aspect-Matrix Building Automation Front-End Solutions permiten a atacantes remotos leer archivos arbitrarios a través de vectores no especificados, como se demuestra por el archivo de configuración. • https://ics-cert.us-cert.gov/advisories/ICSA-16-273-01-0 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2016-2308
https://notcve.org/view.php?id=CVE-2016-2308
American Auto-Matrix Aspect-Nexus Building Automation Front-End Solutions application before 3.0.0 and Aspect-Matrix Building Automation Front-End Solutions application store passwords in cleartext, which allows remote attackers to obtain sensitive information by reading a file. Aplicación American Auto-Matrix Aspect-Nexus Building Automation Front-End Solutions en versiones anteriores a 3.0.0 y aplicación Aspect-Matrix Building Automation Front-End Solutions almacena contraseñas en texto plano, lo que permite a atacantes remotos obtener información sensible leyendo un archivo. • https://ics-cert.us-cert.gov/advisories/ICSA-16-273-01-0 •