CVE-2021-41320

A technical user has hardcoded credentials in Wallstreet Suite TRM 7.4.83 (64-bit edition) with higher privilege than the average authenticated user. NOTE: the vendor disputes this because the password is not hardcoded (it can be changed during installation or at any later time).
Configurations

Configuration 1 (hide)

cpe:2.3:a:iongroup:wallstreet_suite:7.4.83:*:*:*:*:*:x64:*

History

27 May 2024, 14:15

Type Values Removed Values Added
Summary (en) A technical user has hardcoded credentials in Wallstreet Suite TRM 7.4.83 (64-bit edition) with higher privilege than the average authenticated user. (en) A technical user has hardcoded credentials in Wallstreet Suite TRM 7.4.83 (64-bit edition) with higher privilege than the average authenticated user. NOTE: the vendor disputes this because the password is not hardcoded (it can be changed during installation or at any later time).
References
  • () https://client-connect.iongroup.com/library/content/treasury-management/wallstreet-suite/security/suite-7-4-83/user-passwords/ -

21 Oct 2021, 14:13

Type Values Removed Values Added
References (MISC) https://excellium-services.com/cert-xlm-advisory/CVE-2021-41320 - (MISC) https://excellium-services.com/cert-xlm-advisory/CVE-2021-41320 - Third Party Advisory
References (MISC) https://iongroup.com/ion-treasury/products/wallstreet-suite/ - (MISC) https://iongroup.com/ion-treasury/products/wallstreet-suite/ - Product, Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 2.1
v3 : 5.5
CWE CWE-798
CPE cpe:2.3:a:iongroup:wallstreet_suite:7.4.83:*:*:*:*:*:x64:*

15 Oct 2021, 16:27

Type Values Removed Values Added
New CVE

Information

Published : 2021-10-15 16:15

Updated : 2024-05-27 14:15


NVD link : CVE-2021-41320

Mitre link : CVE-2021-41320

CVE.ORG link : CVE-2021-41320


JSON object : View

Products Affected

iongroup

  • wallstreet_suite
CWE
CWE-798

Use of Hard-coded Credentials