Northern.tech Mender 3.3.x before 3.3.2 and 3.4.x before 3.4.0 has Incorrect Access Control and allows low-privileged users default read access to some sensitive device information.
Metrics
Affected Vendors & Products
References
History
Fri, 14 Mar 2025 01:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-284 | |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-14T00:45:33.044Z
Reserved: 2022-09-23T00:00:00.000Z
Link: CVE-2022-41324

Updated: 2024-08-03T12:42:45.720Z

Status : Awaiting Analysis
Published: 2024-06-20T17:15:50.020
Modified: 2025-03-14T01:15:37.990
Link: CVE-2022-41324

No data.