Vulnerability CVE-2024-45273


Published: 2024-10-15

Description:
An unauthenticated local attacker can decrypt the devices config file and therefore compromise the device due to a weak implementation of the encryption used.

Type:

CWE-261

(Weak Cryptography for Passwords)

 References:
https://cert.vde.com/en/advisories/VDE-2024-056
https://cert.vde.com/en/advisories/VDE-2024-066
https://cert.vde.com/en/advisories/VDE-2024-068
https://cert.vde.com/en/advisories/VDE-2024-069

Copyright 2024, cxsecurity.com

 

Back to Top