CVE-2024-41156
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/10/2024
Last modified:
05/12/2024
Description
Profile files from TRO600 series radios are extracted in plain-text<br />
and encrypted file formats. Profile files provide potential attackers<br />
valuable configuration information about the Tropos network. Profiles<br />
can only be exported by authenticated users with higher privilege of write access.
Impact
Base Score 3.x
2.70
Severity 3.x
LOW
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:hitachienergy:tro610_firmware:*:*:*:*:*:*:*:* | 9.1.0.0 (including) | 9.2.0.5 (excluding) |
cpe:2.3:h:hitachienergy:tro610:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:hitachienergy:tro620_firmware:*:*:*:*:*:*:*:* | 9.1.0.0 (including) | 9.2.0.5 (excluding) |
cpe:2.3:h:hitachienergy:tro620:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:hitachienergy:tro670_firmware:*:*:*:*:*:*:*:* | 9.1.0.0 (including) | 9.2.0.5 (excluding) |
cpe:2.3:h:hitachienergy:tro670:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page