CVE-2023-34441

Severity CVSS v4.0:
Pending analysis
Type:
CWE-319 Cleartext Transmission of Sensitive Information
Publication date:
19/10/2023
Last modified:
25/10/2023

Description

<br /> <br /> <br /> Baker Hughes – Bently Nevada 3500 System TDI Firmware version 5.05<br /> <br /> contains a cleartext transmission vulnerability which could allow an attacker to <br /> <br /> steal the authentication secret from communication traffic to the device and reuse it for arbitrary requests.<br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:bakerhughes:bentley_nevada_3500_system_firmware:5.0.5:*:*:*:*:*:*:*
cpe:2.3:h:bakerhughes:bentley_nevada_3500_system:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools