CVE-2024-41156

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/10/2024
Last modified:
05/12/2024

Description

Profile files from TRO600 series radios are extracted in plain-text<br /> and encrypted file formats. Profile files provide potential attackers<br /> valuable configuration information about the Tropos network. Profiles<br /> can only be exported by authenticated users with higher privilege of write access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:hitachienergy:tro610_firmware:*:*:*:*:*:*:*:* 9.1.0.0 (including) 9.2.0.5 (excluding)
cpe:2.3:h:hitachienergy:tro610:-:*:*:*:*:*:*:*
cpe:2.3:o:hitachienergy:tro620_firmware:*:*:*:*:*:*:*:* 9.1.0.0 (including) 9.2.0.5 (excluding)
cpe:2.3:h:hitachienergy:tro620:-:*:*:*:*:*:*:*
cpe:2.3:o:hitachienergy:tro670_firmware:*:*:*:*:*:*:*:* 9.1.0.0 (including) 9.2.0.5 (excluding)
cpe:2.3:h:hitachienergy:tro670:-:*:*:*:*:*:*:*