The local iLabClient database in itech iLabClient 3.7.1 allows local attackers to read cleartext credentials (from the CONFIGS table) for their servers configured in the client.
History

Wed, 25 Jun 2025 14:30:00 +0000

Type Values Removed Values Added
First Time appeared Itech-gmbh
Itech-gmbh ilabclient
CPEs cpe:2.3:a:itech-gmbh:ilabclient:3.7.1:*:*:*:*:*:*:*
Vendors & Products Itech-gmbh
Itech-gmbh ilabclient

Wed, 21 May 2025 20:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-312
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 21 May 2025 17:15:00 +0000

Type Values Removed Values Added
Description The local iLabClient database in itech iLabClient 3.7.1 allows local attackers to read cleartext credentials (from the CONFIGS table) for their servers configured in the client.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2025-05-21T00:00:00.000Z

Updated: 2025-05-21T19:45:07.637Z

Reserved: 2024-12-24T00:00:00.000Z

Link: CVE-2024-56428

cve-icon Vulnrichment

Updated: 2025-05-21T19:37:19.910Z

cve-icon NVD

Status : Analyzed

Published: 2025-05-21T17:15:55.077

Modified: 2025-06-25T14:10:49.127

Link: CVE-2024-56428

cve-icon Redhat

No data.