The affected product may expose credentials remotely between low privileged visualization users during concurrent login operations due to insufficient isolation of authentication data. The vulnerability affects only login operations within an active visualization session.
Metrics
Affected Vendors & Products
References
History
Thu, 21 May 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 21 May 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The affected product may expose credentials remotely between low privileged visualization users during concurrent login operations due to insufficient isolation of authentication data. The vulnerability affects only login operations within an active visualization session. | |
| Title | CODESYS Visualization - Insufficiently Protected Credentials | |
| First Time appeared |
Codesys
Codesys visualization |
|
| Weaknesses | CWE-522 | |
| CPEs | cpe:2.3:a:codesys:visualization:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Codesys
Codesys visualization |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2026-05-21T13:22:36.813Z
Reserved: 2025-11-27T14:02:51.635Z
Link: CVE-2026-0393
Updated: 2026-05-21T13:22:20.955Z
Status : Awaiting Analysis
Published: 2026-05-21T12:16:19.810
Modified: 2026-05-21T16:04:33.830
Link: CVE-2026-0393
No data.
OpenCVE Enrichment
Updated: 2026-05-21T13:00:11Z