CVE-2014-9199Disclosure(clorius_controls_a\/s / java_web_client)

LOWCVSS 10.0 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

The Clorius Controls Java web client before 01.00.0009g allows remote attackers to discover credentials by sniffing the network for cleartext-equivalent traffic.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-326CWE-200

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • java_web_client

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Products
java_web_client

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-02-18: 1Technical Details · 2026-02-18: 102-18
Signal classification1 categories
Disclosure
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • 0day Signal@0dayPublishing
    Disclosure

    🔍 CVE-2014-9199: Clorius Controls A/S ISC SCADA In... Trivial credential sniffing in Clorius Controls SCADA client scores a perfect 10 CVSS - attackers can passively harvest ... https://zerodaysignal.com/vulnerability/CVE-2014-9199 #netsec #vulnerability #CVE #sysadmin #zeroday

    Post summary

    The post announces CVE‑2014‑9199, a credential‑sniffing flaw in Clorius Controls SCADA client with a perfect 10 CVSS score, noting that attackers can passively harvest credentials.

    0000040
    131 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appclorius_controls_a\/sjava_web_client---

Explore more